Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-53351
HistoryJul 14, 2021 - 12:00 a.m.

Siemens Jt2go and Siemens Teamcenter Visualization Out-of-Bounds Read Vulnerability

2021-07-1400:00:00
China National Vulnerability Database
www.cnvd.org.cn
12
siemens ag
out-of-bounds read
jt2go
teamcenter visualization
vulnerability
user-supplied data
bmp files
code execution

EPSS

0.001

Percentile

36.1%

Siemens Jt2go and Siemens Teamcenter Visualization are both products of Siemens AG, Germany. Siemens Jt2go is a JT file viewer. Siemens Teamcenter Visualization is a software that provides team collaboration capabilities for designing 2D and 3D scenes. An out-of-bounds read vulnerability exists in Siemens JT2Go versions prior to 13.2 and Teamcenter Visualization versions prior to 13.2. The vulnerability stems from a failure of the BMP_Loader.dll library to properly validate user-supplied data when parsing BMP files, which could be exploited to execute code in the context of the current process. context of the current process.

EPSS

0.001

Percentile

36.1%

Related for CNVD-2021-53351