Fortinet Discovers Autodesk AutoCAD Products Arbitrary Address Write Vulnerability
Fortinet's FortiGuard Labs has discovered an arbitrary address write vulnerability in Autodesk AutoCAD products.
Autodesk is a multinational software corporation that makes software products and services for the architecture, engineering, construction, manufacturing, media, education and entertainment industries. AutoCAD is a commercial computer-aided design (CAD) and drafting software application.
An arbitrary address write vulnerability has been discovered in Autodesk AutoCAD products by FortiGuard Labs. The vulnerability is caused by a crafted DWG file which causes an arbitrary address write. It could allow malicious users to write in unexpected paths.
SolutionsFortiGuard Labs released the following FortiGate IPS signature which covers this specific vulnerability:
Released Jun 22, 2021
Users should apply the solution provided by Autodesk.
Fortinet reported the vulnerability to Autodesk on November 16, 2020.
Autodesk confirmed the vulnerability on November 16, 2020.
Autodesk patched the vulnerability on June 17, 2021.