Autodesk Design Review buffer overflow vulnerability in CVE-2015-8572)
Autodesk Design Review buffer overflow vulnerability in CVE-2015-8572)
Release date:
Updated on:
Affected Systems:
Autodesk Design Review <2013 Hotfix 2
Description:
CVE (CAN) ID: CVE-2015-8572
Autodesk Design Review is a free DWF viewer software.
Multiple buffer overflow vulnerabilities exist in Autodesk Design Review (ADR) versions earlier than 2013 Hotfix 2, remote attackers can exploit these vulnerabilities to execute arbitrary code by constructing RLE data in BMP or FLI files, scanning lines in PCX files by encoding, DataSubBlock or GlobalColorTable in GIF files.
<* Source: kdot
*>
Suggestion:
Vendor patch:
Autodesk
--------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Https://knowledge.autodesk.com/support/design-review/downloads/caas/downloads/content/autodesk-design-review-2013-hotfix.html
This article permanently updates the link address: