CVE-2024-37002

A maliciously crafted MODEL file, when parsed in ASMkern229A.dllthrough Autodesk applications, can be used to uninitialized variables. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
Configurations

No configuration.

History

28 Jan 2025, 17:15

Type Values Removed Values Added
CWE CWE-863

21 Nov 2024, 09:23

Type Values Removed Values Added
References () https://www.autodesk.com/trust/security-advisories/adsk-sa-2024-0009 - () https://www.autodesk.com/trust/security-advisories/adsk-sa-2024-0009 -

03 Jul 2024, 02:04

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8

25 Jun 2024, 12:24

Type Values Removed Values Added
Summary
  • (es) Un archivo MODEL creado con fines malintencionados, cuando se analiza en ASMkern229A.dll a través de aplicaciones de Autodesk, se puede utilizar para variables no inicializadas. Esta vulnerabilidad, junto con otras vulnerabilidades, podría provocar la ejecución de código en el proceso actual.

25 Jun 2024, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-25 03:15

Updated : 2025-01-28 17:15


NVD link : CVE-2024-37002

Mitre link : CVE-2024-37002

CVE.ORG link : CVE-2024-37002


JSON object : View

Products Affected

No product.

CWE
CWE-457

Use of Uninitialized Variable

CWE-863

Incorrect Authorization