CVE-2019-7358
Summary
| CVE | CVE-2019-7358 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-04-09 20:30:00 UTC |
| Updated | 2020-08-24 17:37:00 UTC |
| Description | An exploitable heap overflow vulnerability in the DXF-parsing functionality in Autodesk Advance Steel 2018, Autodesk AutoCAD 2018, Autodesk AutoCAD Architecture 2018, Autodesk AutoCAD Electrical 2018, Autodesk AutoCAD Map 3D 2018, Autodesk AutoCAD Mechanical 2018, Autodesk AutoCAD MEP 2018, Autodesk AutoCAD P&ID 2018, Autodesk AutoCAD Plant 3D 2018, Autodesk AutoCAD LT 2018, and Autodesk Civil 3D 2018. A specially crafted DXF file may cause a heap overflow, resulting in code execution. |
Risk And Classification
Problem Types: CWE-787
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Autodesk | Advance Steel | 2018 | All | All | All |
| Application | Autodesk | Advance Steel | 2018 | All | All | All |
| Application | Autodesk | Autocad | 2018 | All | All | All |
| Application | Autodesk | Autocad | 2018 | All | All | All |
| Application | Autodesk | Autocad Architecture | 2018 | All | All | All |
| Application | Autodesk | Autocad Architecture | 2018 | All | All | All |
| Application | Autodesk | Autocad Electrical | 2018 | All | All | All |
| Application | Autodesk | Autocad Electrical | 2018 | All | All | All |
| Application | Autodesk | Autocad Lt | 2018 | All | All | All |
| Application | Autodesk | Autocad Lt | 2018 | All | All | All |
| Application | Autodesk | Autocad Map 3d | 2018 | All | All | All |
| Application | Autodesk | Autocad Map 3d | 2018 | All | All | All |
| Application | Autodesk | Autocad Mechanical | 2018 | All | All | All |
| Application | Autodesk | Autocad Mechanical | 2018 | All | All | All |
| Application | Autodesk | Autocad Mep | 2018 | All | All | All |
| Application | Autodesk | Autocad Mep | 2018 | All | All | All |
| Application | Autodesk | Autocad Pid | 2018 | All | All | All |
| Application | Autodesk | Autocad Plant 3d | 2018 | All | All | All |
| Application | Autodesk | Autocad Plant 3d | 2018 | All | All | All |
| Application | Autodesk | Autocad Pid | 2018 | All | All | All |
| Application | Autodesk | Autocad Pid | 2018 | All | All | All |
| Application | Autodesk | Civil 3d | 2018 | All | All | All |
| Application | Autodesk | Civil 3d | 2018 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisories | Autodesk Trust Center | MISC | www.autodesk.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.