CVE-2024-37006

A maliciously crafted CATPRODUCT file, when parsed in CC5Dll.dll through Autodesk applications, can lead to a memory corruption vulnerability by write access violation. This vulnerability, in conjunction with other vulnerabilities, can lead to code execution in the context of the current process.
Configurations

No configuration.

History

28 Jan 2025, 17:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 8.8
v2 : unknown
v3 : 7.8

Information

Published : 2024-06-25 04:15

Updated : 2025-01-28 17:15


NVD link : CVE-2024-37006

Mitre link : CVE-2024-37006

CVE.ORG link : CVE-2024-37006


JSON object : View

Products Affected

No product.

CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer