High severity7.8NVD Advisory· Published Apr 18, 2022· Updated Jun 17, 2026
CVE-2022-27529
CVE-2022-27529
Description
A maliciously crafted PICT, BMP, PSD or TIF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 may be used to write beyond the allocated buffer while parsing PICT, BMP, PSD or TIF file. This vulnerability may be exploited to execute arbitrary code.
Affected products
13cpe:2.3:a:autodesk:autocad:*:*:*:*:*:-:*:*+ 4 more
- cpe:2.3:a:autodesk:autocad:*:*:*:*:*:-:*:*range: >=2019,<2019.1.4
- cpe:2.3:a:autodesk:autocad:*:*:*:*:*:macos:*:*range: >=2022,<2022.2.2
- cpe:2.3:a:autodesk:autocad_lt:*:*:*:*:*:-:*:*range: >=2019,<2019.1.4
- cpe:2.3:a:autodesk:autocad_lt:*:*:*:*:*:macos:*:*range: >=2022,<2022.2.2
- (no CPE)range: 2022, 2021, 2019
- cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*Range: >=2019,<2019.1.4
- cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*Range: >=2019,<2019.1.4
- cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*Range: >=2019,<2019.1.4
Patches
Vulnerability mechanics
References
1- www.autodesk.com/trust/security-advisories/adsk-sa-2022-0004nvdVendor Advisory
News mentions
0No linked articles in our index yet.