Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-25003


A maliciously crafted pskernel.dll file in Autodesk AutoCAD 2023 and Maya 2022 may be used to trigger out-of-bound read write / read vulnerabilities. Exploitation of this vulnerability may lead to code execution.


Published

2023-06-23T19:15:08.983

Last Modified

2024-11-21T07:48:54.767

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Primary
    CWE-125
    CWE-787

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application autodesk alias < 2023.1.1 Yes
Application autodesk autocad < 2020.1.6 Yes
Application autodesk autocad < 2021.1.3 Yes
Application autodesk autocad < 2022.1.3 Yes
Application autodesk autocad < 2023.1.1 Yes
Application autodesk autocad_advance_steel < 2020.1.6 Yes
Application autodesk autocad_advance_steel < 2021.1.3 Yes
Application autodesk autocad_advance_steel < 2022.1.3 Yes
Application autodesk autocad_advance_steel < 2023.1.1 Yes
Application autodesk autocad_architecture < 2020.1.6 Yes
Application autodesk autocad_architecture < 2021.1.3 Yes
Application autodesk autocad_architecture < 2022.1.3 Yes
Application autodesk autocad_architecture < 2023.1.1 Yes
Application autodesk autocad_civil_3d < 2020.1.6 Yes
Application autodesk autocad_civil_3d < 2021.1.3 Yes
Application autodesk autocad_civil_3d < 2022.1.3 Yes
Application autodesk autocad_civil_3d < 2023.1.1 Yes
Application autodesk autocad_electrical < 2020.1.6 Yes
Application autodesk autocad_electrical < 2021.1.3 Yes
Application autodesk autocad_electrical < 2022.1.3 Yes
Application autodesk autocad_electrical < 2023.1.1 Yes
Application autodesk autocad_lt < 2020.1.6 Yes
Application autodesk autocad_lt < 2021.1.3 Yes
Application autodesk autocad_lt < 2022.1.3 Yes
Application autodesk autocad_lt < 2023.1.1 Yes
Application autodesk autocad_map_3d < 2020.1.6 Yes
Application autodesk autocad_map_3d < 2021.1.3 Yes
Application autodesk autocad_map_3d < 2022.1.3 Yes
Application autodesk autocad_map_3d < 2023.1.1 Yes
Application autodesk autocad_mechanical < 2020.1.6 Yes
Application autodesk autocad_mechanical < 2021.1.3 Yes
Application autodesk autocad_mechanical < 2022.1.3 Yes
Application autodesk autocad_mechanical < 2023.1.1 Yes
Application autodesk autocad_mep < 2020.1.6 Yes
Application autodesk autocad_mep < 2021.1.3 Yes
Application autodesk autocad_mep < 2022.1.3 Yes
Application autodesk autocad_mep < 2023.1.1 Yes
Application autodesk autocad_plant_3d < 2020.1.6 Yes
Application autodesk autocad_plant_3d < 2021.1.3 Yes
Application autodesk autocad_plant_3d < 2022.1.3 Yes
Application autodesk autocad_plant_3d < 2023.1.1 Yes
Application autodesk infraworks < 2021.2 Yes
Application autodesk infraworks < 2022.1 Yes
Application autodesk infraworks < 2023.1 Yes
Application autodesk inventor < 2021.5 Yes
Application autodesk inventor < 2022.4 Yes
Application autodesk inventor < 2023.3.1 Yes
Application autodesk maya_usd < 2022.5 Yes
Application autodesk maya_usd < 2023.3 Yes
Application autodesk navisworks < 2022.4 Yes
Application autodesk navisworks < 2023.2 Yes
Application autodesk revit < 2021.1.8 Yes
Application autodesk vred < 2023.4 Yes

References