High severity7.8NVD Advisory· Published Apr 11, 2022· Updated Jun 17, 2026
CVE-2022-25789
CVE-2022-25789
Description
A maliciously crafted DWF, 3DS and DWFX files in Autodesk AutoCAD 2022, 2021, 2020, 2019 can be used to trigger use-after-free vulnerability. Exploitation of this vulnerability may lead to code execution.
Affected products
12cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*range: >=2019,<2019.1.4
- cpe:2.3:a:autodesk:autocad:*:*:*:*:*:macos:*:*range: >=2022,<2022.2.2
- cpe:2.3:a:autodesk:autocad_lt:*:*:*:*:*:*:*:*range: >=2019,<2019.1.4
- (no CPE)range: 2022, 2021, 2020, 2019
- cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*Range: >=2019,<2019.1.4
- cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*Range: >=2019,<2019.1.4
- cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*Range: >=2019,<2019.1.4
Patches
Vulnerability mechanics
References
1- www.autodesk.com/trust/security-advisories/adsk-sa-2022-0005nvdVendor Advisory
News mentions
0No linked articles in our index yet.