A maliciously crafted MODEL file, when parsed in ASMkern229A.dllthrough Autodesk applications, can be used to uninitialized variables. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
                
            References
                    | Link | Resource | 
|---|---|
| https://www.autodesk.com/trust/security-advisories/adsk-sa-2024-0009 | Vendor Advisory | 
| https://www.autodesk.com/trust/security-advisories/adsk-sa-2024-0009 | Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| 
 | 
Configuration 2 (hide)
| 
 | 
Configuration 3 (hide)
| 
 | 
Configuration 4 (hide)
| 
 | 
Configuration 5 (hide)
| 
 | 
Configuration 6 (hide)
| 
 | 
Configuration 7 (hide)
| 
 | 
Configuration 8 (hide)
| 
 | 
Configuration 9 (hide)
| 
 | 
History
                    27 Aug 2025, 22:15
| Type | Values Removed | Values Added | 
|---|---|---|
| CWE | 
06 May 2025, 19:45
| Type | Values Removed | Values Added | 
|---|---|---|
| CPE | cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_map_3d:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_mep:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:advance_steel:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:civil_3d:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_plant_3d:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:* | |
| References | () https://www.autodesk.com/trust/security-advisories/adsk-sa-2024-0009 - Vendor Advisory | |
| First Time | Autodesk autocad Architecture Autodesk autocad Mechanical Autodesk autocad Autodesk civil 3d Autodesk autocad Plant 3d Autodesk autocad Map 3d Autodesk autocad Mep Autodesk Autodesk autocad Electrical Autodesk advance Steel | 
28 Jan 2025, 17:15
| Type | Values Removed | Values Added | 
|---|---|---|
| CWE | CWE-863 | 
21 Nov 2024, 09:23
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://www.autodesk.com/trust/security-advisories/adsk-sa-2024-0009 - | 
03 Jul 2024, 02:04
| Type | Values Removed | Values Added | 
|---|---|---|
| CVSS | v2 : v3 : | v2 : unknown v3 : 7.8 | 
25 Jun 2024, 12:24
| Type | Values Removed | Values Added | 
|---|---|---|
| Summary | 
 | 
25 Jun 2024, 03:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2024-06-25 03:15
Updated : 2025-08-27 22:15
NVD link : CVE-2024-37002
Mitre link : CVE-2024-37002
CVE.ORG link : CVE-2024-37002
JSON object : View
Products Affected
                autodesk
- autocad
- advance_steel
- autocad_plant_3d
- autocad_mechanical
- autocad_mep
- autocad_architecture
- autocad_map_3d
- civil_3d
- autocad_electrical
CWE
                
                    
                        
                        CWE-457
                        
            Use of Uninitialized Variable
