Due to lack of proper memory management, when a victim opens manipulated Computer Graphics Metafile (.cgm, CgmCore.dll) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9, a Remote Code Execution can be triggered when payload forces a stack-based overflow and or a re-use of dangling pointer which refers to overwritten space in memory.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2024-08-03T12:35:49.550Z
Reserved: 2022-09-21T00:00:00
Link: CVE-2022-41186
No data.
Status : Modified
Published: 2022-10-11T21:15:20.927
Modified: 2024-11-21T07:22:46.740
Link: CVE-2022-41186
No data.
OpenCVE Enrichment
No data.