5.5
CVE-2026-7405
- EPSS 0.12%
- Veröffentlicht 06.08.2026 22:18:32
- Zuletzt bearbeitet 07.08.2026 19:18:54
- CVE-Watchlists
- Unerledigt
TIF File Parsing Out-of-Bounds Read in certain Autodesk products
A maliciously crafted TIF file, when parsed through certain Autodesk products during image import, can cause an Out-of-Bounds Read in the image handling library. A malicious actor can leverage this vulnerability to cause a denial of service
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerAutodesk
≫
Produkt
Revit
Default Statusunaffected
Version
2027.0.0
Version <
2027.1.0
Status
affected
Version
2026.0.0
Version <
2026.5.0
Status
affected
Version
2024.0.0
Version <
2024.3.5
Status
affected
HerstellerAutodesk
≫
Produkt
AutoCAD
Default Statusunaffected
Version
2027.0.0
Version <
2027.1.0
Status
affected
Version
2026.0.0
Version <
2026.1.2
Status
affected
HerstellerAutodesk
≫
Produkt
AutoCAD LT
Default Statusunaffected
Version
2027.0.0
Version <
2027.1.0
Status
affected
Version
2026.0.0
Version <
2026.1.2
Status
affected
HerstellerAutodesk
≫
Produkt
DWG TrueView
Default Statusunaffected
Version
2027.0.0
Version <
2027.1.0
Status
affected
Version
2026.0.0
Version <
2026.1.2
Status
affected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.12% | 0.018 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| Autodesk | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
|
CWE-125 Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
https://www.autodesk.com/products/autodesk-access/overview
https://www.autodesk.com/trust/security-advisories/adsk-sa-2026-0012