Use-After-Free vulnerability exists in the SLDPRT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025. This vulnerability could allow an attacker to execute arbitrary code while opening a specially crafted SLDPRT file.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.3ds.com/vulnerability/advisories |
|
History
Fri, 02 May 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 02 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Use-After-Free vulnerability exists in the SLDPRT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025. This vulnerability could allow an attacker to execute arbitrary code while opening a specially crafted SLDPRT file. | |
| Title | Use-After-Free vulnerability exists in SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025 | |
| Weaknesses | CWE-416 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: 3DS
Published: 2025-05-02T15:03:25.073Z
Updated: 2025-05-02T15:32:37.751Z
Reserved: 2025-03-03T12:31:58.250Z
Link: CVE-2025-1884
Updated: 2025-05-02T15:32:33.889Z
Status : Awaiting Analysis
Published: 2025-05-02T15:15:48.440
Modified: 2025-05-05T20:54:45.973
Link: CVE-2025-1884
No data.