Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-42309 | A vulnerability has been identified in ModelSim (All versions < V2024.3), Questa (All versions < V2024.3). gdb.exe in affected applications allows a specific executable file to be loaded from the current working directory. This could allow an authenticated local attacker to inject arbitrary code and escalate privileges in installations where administrators or processes with elevated privileges launch gdb.exe from a user-writable directory. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 08 Oct 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Siemens
Siemens modelsim Siemens questa |
|
| CPEs | cpe:2.3:a:siemens:modelsim:*:*:*:*:*:*:*:* cpe:2.3:a:siemens:questa:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Siemens
Siemens modelsim Siemens questa |
|
| Metrics |
ssvc
|
Tue, 08 Oct 2024 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been identified in ModelSim (All versions < V2024.3), Questa (All versions < V2024.3). gdb.exe in affected applications allows a specific executable file to be loaded from the current working directory. This could allow an authenticated local attacker to inject arbitrary code and escalate privileges in installations where administrators or processes with elevated privileges launch gdb.exe from a user-writable directory. | |
| Weaknesses | CWE-427 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: siemens
Published:
Updated: 2024-10-08T16:51:24.486Z
Reserved: 2024-09-20T15:14:29.689Z
Link: CVE-2024-47195
Updated: 2024-10-08T16:51:18.707Z
Status : Analyzed
Published: 2024-10-08T09:15:17.300
Modified: 2024-10-16T18:11:29.990
Link: CVE-2024-47195
No data.
OpenCVE Enrichment
No data.
EUVD