Security Advisory

CVE-2024-3299

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-04-04 15:13:06
Last updated 2024-08-01 20:05:08
Assigner 3DS
State PUBLISHED

Description

Out-Of-Bounds Write, Use of Uninitialized Resource and Use-After-Free vulnerabilities exist in the file reading procedure in eDrawings from Release SOLIDWORKS 2023 through Release SOLIDWORKS 2024. These vulnerabilities could allow an attacker to execute arbitrary code while opening a specially crafted SLDDRW or SLDPRT file. NOTE: this vulnerability was SPLIT from CVE-2024-1847.