High severity7.8NVD Advisory· Published Nov 23, 2023· Updated Jun 17, 2026
CVE-2023-41139
CVE-2023-41139
Description
A maliciously crafted STP file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to dereference an untrusted pointer. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
Affected products
14cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*range: >=2023.0.0,<2023.1.4
- cpe:2.3:a:autodesk:autocad:*:*:*:*:*:macos:*:*range: <2024.1
- cpe:2.3:a:autodesk:autocad_lt:*:*:*:*:*:*:*:*range: <2023.1.4
- cpe:2.3:a:autodesk:autocad_lt:*:*:*:*:*:macos:*:*range: <2024.1
- (no CPE)range: 2024, 2023
cpe:2.3:a:autodesk:autocad_advance_steel:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:autodesk:autocad_advance_steel:*:*:*:*:*:*:*:*range: <2023.1.4
- (no CPE)range: 2024, 2023
- cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*Range: <2023.1.4
Patches
Vulnerability mechanics
References
1- www.autodesk.com/trust/security-advisories/adsk-sa-2023-0018nvdVendor Advisory
News mentions
0No linked articles in our index yet.