CVE-2021-27039
Summary
| CVE | CVE-2021-27039 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-07-09 15:15:00 UTC |
| Updated | 2022-04-25 19:12:00 UTC |
| Description | A maliciously crafted TIFF and PCX file can be forced to read and write beyond allocated boundaries when parsing the TIFF and PCX file for based overflow. This vulnerability can be exploited to execute arbitrary code. |
Risk And Classification
Problem Types: CWE-787
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Autodesk | Autocad | All | All | All | All |
| Application | Autodesk | Design Review | 2011 | All | All | All |
| Application | Autodesk | Design Review | 2012 | All | All | All |
| Application | Autodesk | Design Review | 2013 | All | All | All |
| Application | Autodesk | Design Review | 2017 | All | All | All |
| Application | Autodesk | Design Review | 2018 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisories | Autodesk Trust Center | MISC | www.autodesk.com | |
| Security Advisories | Autodesk Trust Center | MISC | www.autodesk.com | |
| ZDI-22-505 | Zero Day Initiative | MISC | www.zerodayinitiative.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 375926 Autodesk Design Review Multiple Vulnerabilities (ADSK-SA-2021-0003)