← Back

CVE-2022-34465

nvd nist
Published: Jul 12, 2022Modified: Nov 21, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

A vulnerability has been identified in Parasolid V33.1 (All versions < V33.1.264), Parasolid V34.0 (All versions < V34.0.250), Parasolid V34.1 (All versions < V34.1.233), Simcenter Femap V2022.1 (All versions < V2022.1.3), Simcenter Femap V2022.2 (All versions < V2022.2.2). The affected application contains an out of bounds read past the end of an allocated structure while parsing specially crafted NEU files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-15420)

Affected (5)

2 products
Parasolid
Simcenter Femap
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Siemens
After 34.0 to 34.0.250
After 34.1 to 34.1.233
From 33.1 to 33.1.264
Siemens
From 2022.1.0 to 2022.1.3
From 2022.2.0 to 2022.2.2

References (2)

Source: productcert@siemens.com
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.