Description Preview
Overview
The vulnerability is a classic buffer overflow issue (CWE-120), where the software does not properly check the size of the input before copying it to a buffer. This can lead to memory corruption and potentially allow an attacker to execute arbitrary code. The attack complexity is low, and no privileges are required to exploit the vulnerability. However, user interaction is required, and the attack vector is local.
Remediation
Users are advised to update their software to the latest version to mitigate this vulnerability. Specifically, users should update to AutoCAD 2025 version 2025.1.2 or later and AutoCAD 2023 version 2023.1.7 or later. Users should also be cautious when opening SLDPRT files from untrusted sources.
References
More information about this vulnerability can be found in the security advisory published by Autodesk at the following URL: https://www.autodesk.com/trust/security-advisories/adsk-sa-2025-0001
Industry ExposureMost to leastThis section illustrates the prevalence of a specific Common Vulnerabilities and Exposures (CVE) across various industries based on customer reports. The ranking displays industries from the most to least affected by this particular vulnerability, offering valuable insight into where this CVE has been most frequently observed. This information can help organizations within these sectors prioritize their security efforts, understand their relative risk exposure compared to their peers, and focus remediation strategies where they are most needed. By understanding the industry-specific impact, organizations can make more informed decisions regarding patching, resource allocation, and overall risk management related to this CVE.
- ManufacturingManufacturing
- Health Care & Social AssistanceHealth Care & Social Assistance
- Public AdministrationPublic Administration
- Arts, Entertainment & RecreationArts, Entertainment & Recreation
- UtilitiesUtilities
- Educational ServicesEducational Services
- Professional, Scientific, & Technical ServicesProfessional, Scientific, & Technical Services
- Retail TradeRetail Trade
- Management of Companies & EnterprisesManagement of Companies & Enterprises
- Transportation & WarehousingTransportation & Warehousing
- Finance and InsuranceFinance and Insurance
- Other Services (except Public Administration)Other Services (except Public Administration)
- Accommodation & Food ServicesAccommodation & Food Services
- Administrative, Support, Waste Management & Remediation ServicesAdministrative, Support, Waste Management & Remediation Services
- Agriculture, Forestry Fishing & HuntingAgriculture, Forestry Fishing & Hunting
- ConstructionConstruction
- InformationInformation
- MiningMining
- Real Estate Rental & LeasingReal Estate Rental & Leasing
- Wholesale TradeWholesale Trade