Buffer overflow in SketchUp Viewer for Mac and SketchUp Viewer for Windows - CVE-2023-50187
Published: January 3, 2024
SketchUp Viewer for Mac
SketchUp Viewer for Windows
Trimble
Description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a boundary error within the parsing of SKP files. A remote attacker can create a specially file, trick the victim into opening it, trigger memory corruption and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.