A vulnerability has been identified in Simcenter Femap (All versions < V2401.0000). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted Catia MODEL file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21710)
History

Thu, 07 Nov 2024 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 03 Oct 2024 17:45:00 +0000

Type Values Removed Values Added
First Time appeared Siemens
Siemens simcenter Femap
CPEs cpe:2.3:a:siemens:simcenter_femap:*:*:*:*:*:*:*:*
Vendors & Products Siemens
Siemens simcenter Femap

cve-icon MITRE

Status: PUBLISHED

Assigner: siemens

Published: 2024-02-13T09:00:28.317Z

Updated: 2024-11-07T19:08:38.838Z

Reserved: 2024-02-01T15:21:44.578Z

Link: CVE-2024-24920

cve-icon Vulnrichment

Updated: 2024-08-01T23:36:20.541Z

cve-icon NVD

Status : Analyzed

Published: 2024-02-13T09:15:50.547

Modified: 2024-10-03T17:20:18.263

Link: CVE-2024-24920

cve-icon Redhat

No data.