CVE-2023-29076: Autodesk Autocad
Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.
A maliciously crafted MODEL, SLDASM, SAT or CATPART file when parsed through Autodesk AutoCAD 2024 and 2023 could cause memory corruption vulnerability. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
Affected products
- Autodesk Autocad: before 2024.1 (fixed in 2024.1); from 2023.0.0, before 2023.1.4 (fixed in 2023.1.4); from 2024.0.0, before 2024.1.1 (fixed in 2024.1.1)
- Autodesk Autocad Advance Steel: before 2023.1.4 (fixed in 2023.1.4); from 2024.0.0, before 2024.1.1 (fixed in 2024.1.1)
- Autodesk Autocad Architecture: before 2023.1.4 (fixed in 2023.1.4); from 2024.0.0, before 2024.1.1 (fixed in 2024.1.1)
- Autodesk Autocad Civil 3d: before 2023.1.4 (fixed in 2023.1.4); from 2024.0.0, before 2024.1.1 (fixed in 2024.1.1)
- Autodesk Autocad Electrical: before 2023.1.4 (fixed in 2023.1.4); from 2024.0.0, before 2024.1.1 (fixed in 2024.1.1)
- Autodesk Autocad Lt: before 2023.1.4 (fixed in 2023.1.4); before 2024.1 (fixed in 2024.1); from 2024.0.0, before 2024.1.1 (fixed in 2024.1.1)
- Autodesk Autocad Map 3d: before 2023.1.4 (fixed in 2023.1.4); from 2024.0.0, before 2024.1.1 (fixed in 2024.1.1)
- Autodesk Autocad Mechanical: before 2023.1.4 (fixed in 2023.1.4); from 2024.0.0, before 2024.1.1 (fixed in 2024.1.1)
- Autodesk Autocad Mep: before 2023.1.4 (fixed in 2023.1.4); from 2024.0.0, before 2024.1.1 (fixed in 2024.1.1)
- Autodesk Autocad Plant 3d: before 2023.1.4 (fixed in 2023.1.4); from 2024.0.0, before 2024.1.1 (fixed in 2024.1.1)
Published 2023-11-23. Last modified 2026-06-17.