VYPR
High severity7.8NVD Advisory· Published Apr 13, 2022· Updated Jun 17, 2026

CVE-2022-25797

CVE-2022-25797

Description

A maliciously crafted PDF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 can be used to dereference for a write beyond the allocated buffer while parsing PDF files. The vulnerability exists because the application fails to handle a crafted PDF file, which causes an unhandled exception.

Affected products

4
  • cpe:2.3:a:autodesk:dwg_trueview:2021:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:autodesk:dwg_trueview:2021:*:*:*:*:*:*:*
    • cpe:2.3:a:autodesk:dwg_trueview:2022:*:*:*:*:*:*:*
  • Autodesk/Autocadcpe-rescue2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: 2022, 2021, 2020, 2019

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.