PyAnsys Geometry is a Python client library for the Ansys Geometry service and other CAD Ansys products. On file src/ansys/geometry/core/connection/product_instance.py, upon calling this method _start_program directly, users could exploit its usage to perform malicious operations on the current machine where the script is ran. This vulnerability is fixed in 0.3.3 and 0.4.12.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-0801 PyAnsys Geometry is a Python client library for the Ansys Geometry service and other CAD Ansys products. On file src/ansys/geometry/core/connection/product_instance.py, upon calling this method _start_program directly, users could exploit its usage to perform malicious operations on the current machine where the script is ran. This vulnerability is fixed in 0.3.3 and 0.4.12.
Github GHSA Github GHSA GHSA-38jr-29fh-w9vm ansys-geometry-core OS Command Injection vulnerability
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Mon, 15 Dec 2025 21:45:00 +0000

Type Values Removed Values Added
First Time appeared Ansys
Ansys pyansys Geometry
CPEs cpe:2.3:a:ansys:pyansys_geometry:*:*:*:*:*:*:*:*
Vendors & Products Ansys
Ansys pyansys Geometry

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2024-08-05T20:27:31.415Z

Reserved: 2024-03-18T17:07:00.094Z

Link: CVE-2024-29189

cve-icon Vulnrichment

Updated: 2024-08-02T01:10:54.820Z

cve-icon NVD

Status : Analyzed

Published: 2024-03-26T03:15:13.150

Modified: 2025-12-15T21:38:09.403

Link: CVE-2024-29189

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses