CVE-2015-8571: Autodesk Design Review

Medium severity, CVSS 6.8. EPSS: 3.4% chance of exploitation in the next 30 days.

Integer overflow in Autodesk Design Review (ADR) before 2013 Hotfix 2 allows remote attackers to execute arbitrary code via a crafted biClrUsed value in a BMP file, which triggers a buffer overflow.

Affected products

  • Autodesk Design Review: version 2013 only

Published 2015-12-15. Last modified 2026-06-17.