VYPR
High severity7.8NVD Advisory· Published Oct 7, 2022· Updated Jun 17, 2026

CVE-2021-40164

CVE-2021-40164

Description

A heap-based buffer overflow could occur while parsing TIFF, PICT, TGA, or RLC files. This vulnerability may be exploited to execute arbitrary code.

Affected products

42
  • Autodesk/Autocad3 versions
    cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*range: >=2019,<2019.1.4
    • cpe:2.3:a:autodesk:autocad_lt:*:*:*:*:*:*:*:*range: >=2019,<2019.1.4
    • cpe:2.3:a:autodesk:autocad_lt:*:*:*:*:*:macos:*:*range: >=2020,<2020.3.2
  • cpe:2.3:a:autodesk:autocad_advance_steel:*:*:*:*:*:*:*:*
    Range: >=2019,<2019.1.4
  • cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*
    Range: >=2019,<2019.1.4
  • cpe:2.3:a:autodesk:autocad_civil_3d:*:*:*:*:*:*:*:*
    Range: >=2019,<2019.1.4
  • cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*
    Range: >=2019,<2019.1.4
  • cpe:2.3:a:autodesk:autocad_map_3d:*:*:*:*:*:*:*:*
    Range: >=2019,<2019.1.4
  • cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*
    Range: >=2019,<2019.1.4
  • cpe:2.3:a:autodesk:autocad_mep:*:*:*:*:*:*:*:*
    Range: >=2019,<2019.1.4
  • cpe:2.3:a:autodesk:autocad_plant_3d:*:*:*:*:*:*:*:*
    Range: >=2019,<2019.1.4
  • cpe:2.3:a:autodesk:design_review:2018:-:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:autodesk:design_review:2018:-:*:*:*:*:*:*
    • cpe:2.3:a:autodesk:design_review:2018:hotfix2:*:*:*:*:*:*
    • cpe:2.3:a:autodesk:design_review:2018:hotfix3:*:*:*:*:*:*
    • cpe:2.3:a:autodesk:design_review:2018:hotfix:*:*:*:*:*:*
  • cpe:2.3:a:autodesk:dwg_trueview:*:*:*:*:*:*:*:*
    Range: >=2019,<2019.1.4
  • cpe:2.3:a:autodesk:fusion:*:*:*:*:*:*:*:*
    Range: >=2.0.10356,<2.0.11405
  • cpe:2.3:a:autodesk:infrastructure_parts_editor:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:autodesk:infrastructure_parts_editor:*:*:*:*:*:*:*:*range: >=2019,<2019.2.2
    • cpe:2.3:a:autodesk:infrastructure_parts_editor:2021:*:*:*:*:*:*:*
    • cpe:2.3:a:autodesk:infrastructure_parts_editor:2022:*:*:*:*:*:*:*
  • Autodesk/InfraWorks14 versions
    cpe:2.3:a:autodesk:infraworks:*:*:*:*:*:*:*:*+ 13 more
    • cpe:2.3:a:autodesk:infraworks:*:*:*:*:*:*:*:*range: >=2019,<2019.3
    • cpe:2.3:a:autodesk:infraworks:2019.3:-:*:*:*:*:*:*
    • cpe:2.3:a:autodesk:infraworks:2019.3:hotfix_1:*:*:*:*:*:*
    • cpe:2.3:a:autodesk:infraworks:2019.3:hotfix_2:*:*:*:*:*:*
    • cpe:2.3:a:autodesk:infraworks:2019.3:hotfix_3:*:*:*:*:*:*
    • cpe:2.3:a:autodesk:infraworks:2020.2:-:*:*:*:*:*:*
    • cpe:2.3:a:autodesk:infraworks:2020.2:hotfix_1:*:*:*:*:*:*
    • cpe:2.3:a:autodesk:infraworks:2020.2:hotfix_2:*:*:*:*:*:*
    • cpe:2.3:a:autodesk:infraworks:2021.2:-:*:*:*:*:*:*
    • cpe:2.3:a:autodesk:infraworks:2021.2:hotfix_1:*:*:*:*:*:*
    • cpe:2.3:a:autodesk:infraworks:2021.2:hotfix_2:*:*:*:*:*:*
    • cpe:2.3:a:autodesk:infraworks:2022.0:-:*:*:*:*:*:*
    • cpe:2.3:a:autodesk:infraworks:2022.0:hotfix_1:*:*:*:*:*:*
    • cpe:2.3:a:autodesk:infraworks:2022.1:*:*:*:*:*:*:*
  • cpe:2.3:a:autodesk:inventor:*:*:*:*:*:*:*:*
    Range: >=2019,<2019.6
  • cpe:2.3:a:autodesk:navisworks:*:*:*:*:*:*:*:*
    Range: >=2019,<2019.7
  • Autodesk/Revit2 versions
    cpe:2.3:a:autodesk:revit:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:autodesk:revit:*:*:*:*:*:*:*:*range: >=2019,<2019.2.4
    • cpe:2.3:a:autodesk:revit:2022:*:*:*:*:*:*:*
  • cpe:2.3:a:autodesk:storm_and_sanitary_analysis:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:autodesk:storm_and_sanitary_analysis:*:*:*:*:*:*:*:*range: >=2020,<2020.3.1
    • cpe:2.3:a:autodesk:storm_and_sanitary_analysis:2019:*:*:*:*:*:*:*
    • cpe:2.3:a:autodesk:storm_and_sanitary_analysis:2022:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.