High severity7.8NVD Advisory· Published Nov 23, 2023· Updated Jun 17, 2026
CVE-2023-41140
CVE-2023-41140
Description
A maliciously crafted PRT file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cause a Heap-Based Buffer Overflow. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
Affected products
14cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*range: >=2023.0.0,<2023.1.4
- cpe:2.3:a:autodesk:autocad:*:*:*:*:*:macos:*:*range: <2024.1
- cpe:2.3:a:autodesk:autocad_lt:*:*:*:*:*:*:*:*range: <2023.1.4
- cpe:2.3:a:autodesk:autocad_lt:*:*:*:*:*:macos:*:*range: <2024.1
- (no CPE)range: 2024, 2023
cpe:2.3:a:autodesk:autocad_advance_steel:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:autodesk:autocad_advance_steel:*:*:*:*:*:*:*:*range: <2023.1.4
- (no CPE)range: 2024, 2023
- cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*Range: <2023.1.4
Patches
Vulnerability mechanics
References
1- www.autodesk.com/trust/security-advisories/adsk-sa-2023-0018nvdVendor Advisory
News mentions
0No linked articles in our index yet.