PyAnsys Geometry is a Python client library for the Ansys Geometry service and other CAD Ansys products. On file src/ansys/geometry/core/connection/product_instance.py, upon calling this method _start_program directly, users could exploit its usage to perform malicious operations on the current machine where the script is ran. This vulnerability is fixed in 0.3.3 and 0.4.12.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-0801 | PyAnsys Geometry is a Python client library for the Ansys Geometry service and other CAD Ansys products. On file src/ansys/geometry/core/connection/product_instance.py, upon calling this method _start_program directly, users could exploit its usage to perform malicious operations on the current machine where the script is ran. This vulnerability is fixed in 0.3.3 and 0.4.12. |
Github GHSA |
GHSA-38jr-29fh-w9vm | ansys-geometry-core OS Command Injection vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 15 Dec 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ansys
Ansys pyansys Geometry |
|
| CPEs | cpe:2.3:a:ansys:pyansys_geometry:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ansys
Ansys pyansys Geometry |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-05T20:27:31.415Z
Reserved: 2024-03-18T17:07:00.094Z
Link: CVE-2024-29189
Updated: 2024-08-02T01:10:54.820Z
Status : Analyzed
Published: 2024-03-26T03:15:13.150
Modified: 2025-12-15T21:38:09.403
Link: CVE-2024-29189
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA