CVE-2022-33889 Vulnerability Details
/
/
/
CVE-2022-33889 Metadata Quick Info
CVE Published: 03/10/2022 |
CVE Updated: 03/08/2024 |
CVE Year: 2022
Source: autodesk |
Vendor: n/a |
Product: Autodesk® Design Review, Autodesk® Advance Steel, Autodesk® Civil 3D®
Status : PUBLISHED
CVE-2022-33889 Description
A maliciously crafted GIF or JPEG files when parsed through Autodesk Design Review 2018, and AutoCAD 2023 and 2022 could be used to write beyond the allocated heap buffer. This vulnerability could lead to arbitrary code execution.
Metrics
CVSS Version: 3.1 |
Base Score: n/a
Vector: n/a
l➤ Exploitability Metrics:
Attack Vector (AV)*
Attack Complexity (AC)*
Privileges Required (PR)*
User Interaction (UI)*
Scope (S)*
l➤ Impact Metrics:
Confidentiality Impact (C)*
Integrity Impact (I)*
Availability Impact (A)*
Weakness Enumeration (CWE)
CWE-ID:
CWE Name: Heap based Overflow Buffer
Source: n/a
Common Attack Pattern Enumeration and Classification (CAPEC)
CAPEC-ID:
CAPEC Description:
Source: NVD (National Vulnerability Database).