A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0018), Tecnomatix Plant Simulation V2404 (All versions < V2404.0007). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted WRL files.
This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-24237)
Metrics
Affected Vendors & Products
References
History
Wed, 20 Nov 2024 15:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | cpe:2.3:a:siemens:tecnomatix_plant_simulation:*:*:*:*:*:*:*:* |
Mon, 18 Nov 2024 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Siemens
Siemens tecnomatix Plant Simulation |
|
CPEs | cpe:2.3:a:siemens:tecnomatix_plant_simulation:-:*:*:*:*:*:*:* | |
Vendors & Products |
Siemens
Siemens tecnomatix Plant Simulation |
|
Metrics |
ssvc
|
Mon, 18 Nov 2024 15:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0018), Tecnomatix Plant Simulation V2404 (All versions < V2404.0007). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted WRL files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-24237) | |
Weaknesses | CWE-125 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: siemens
Published: 2024-11-18T15:39:26.910Z
Updated: 2024-11-18T19:04:07.097Z
Reserved: 2024-11-14T12:25:53.335Z
Link: CVE-2024-52567
Vulnrichment
Updated: 2024-11-18T19:03:58.622Z
NVD
Status : Analyzed
Published: 2024-11-18T16:15:27.537
Modified: 2024-11-20T14:33:09.433
Link: CVE-2024-52567
Redhat
No data.