CVE-2024-23141

June 25, 2024, 12:24 p.m.

Product(s) Impacted

Autodesk applications

Description

A maliciously crafted MODEL file, when parsed in libodxdll through Autodesk applications, can cause a double free. This vulnerability, along with other vulnerabilities, can lead to code execution in the current process.

Weaknesses

CWE-415
Double Free

The product calls free() twice on the same memory address, potentially leading to modification of unexpected memory locations.

CWE ID: 415

Date

Published: June 25, 2024, 2:15 a.m.

Last Modified: June 25, 2024, 12:24 p.m.

Status : Awaiting Analysis

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

psirt@autodesk.com

References