CVE-2022-40201

Bentley Systems MicroStation Connect versions 10.17.0.209 and prior are vulnerable to a Stack-Based Buffer Overflow when a malformed design (DGN) file is parsed. This may allow an attacker to execute arbitrary code.
Configurations

Configuration 1 (hide)

cpe:2.3:a:bentley:microstation_connect:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:21

Type Values Removed Values Added
Summary
  • (es) Bentley Systems MicroStation Connect versiones 10.17.0.209 y anteriores son vulnerables a un desbordamiento de búfer en la región stack de la memoria cuando se analiza un archivo design (DGN) con formato incorrecto. Esto puede permitir que un atacante ejecute código arbitrario.
References () https://www.bentley.com/advisories/be-2023-0003/ - () https://www.bentley.com/advisories/be-2023-0003/ -
References () https://www.cisa.gov/uscert/ics/advisories/icsa-22-293-01 - Third Party Advisory, US Government Resource () https://www.cisa.gov/uscert/ics/advisories/icsa-22-293-01 - Third Party Advisory, US Government Resource

02 Feb 2024, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-01-06 22:15

Updated : 2024-11-21 07:21


NVD link : CVE-2022-40201

Mitre link : CVE-2022-40201

CVE.ORG link : CVE-2022-40201


JSON object : View

Products Affected

bentley

  • microstation_connect
CWE
CWE-121

Stack-based Buffer Overflow