A maliciously crafted DWG or DXF file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash or disclose sensitive information.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 29 Jul 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 29 Jul 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A maliciously crafted DWG or DXF file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash or disclose sensitive information. | |
| Title | DWG or DXF File Parsing Out-of-Bounds Read in Autodesk AutoCAD | |
| First Time appeared |
Autodesk
Autodesk autocad Autodesk autocad Lt Autodesk dwg Trueview |
|
| Weaknesses | CWE-125 | |
| CPEs | cpe:2.3:a:autodesk:autocad:2027:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_lt:2027:*:*:*:*:*:*:* cpe:2.3:a:autodesk:dwg_trueview:2027:*:*:*:*:*:*:* |
|
| Vendors & Products |
Autodesk
Autodesk autocad Autodesk autocad Lt Autodesk dwg Trueview |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: autodesk
Published:
Updated: 2026-07-29T15:55:18.403Z
Reserved: 2026-07-21T13:11:00.568Z
Link: CVE-2026-16465
Updated: 2026-07-29T15:55:15.474Z
No data.
No data.
OpenCVE Enrichment
No data.
Weaknesses