Description
A maliciously crafted DWG or DXF file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash or disclose sensitive information.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Wed, 29 Jul 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A maliciously crafted DWG or DXF file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash or disclose sensitive information. | |
| Title | DWG or DXF File Parsing Out-of-Bounds Read in Autodesk AutoCAD | |
| First Time appeared |
Autodesk
Autodesk autocad Autodesk autocad Lt Autodesk dwg Trueview |
|
| Weaknesses | CWE-125 | |
| CPEs | cpe:2.3:a:autodesk:autocad:2027:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_lt:2027:*:*:*:*:*:*:* cpe:2.3:a:autodesk:dwg_trueview:2027:*:*:*:*:*:*:* |
|
| Vendors & Products |
Autodesk
Autodesk autocad Autodesk autocad Lt Autodesk dwg Trueview |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: autodesk
Published:
Updated: 2026-07-29T15:23:16.031Z
Reserved: 2026-07-27T12:14:33.962Z
Link: CVE-2026-17550
No data.
No data.
No data.
OpenCVE Enrichment
No data.
Weaknesses