CVE-2022-41613

Bentley Systems MicroStation Connect versions 10.17.0.209 and prior are vulnerable to an Out-of-Bounds Read when when parsing DGN files, which may allow an attacker to crash the product, disclose sensitive information, or execute arbitrary code.
Configurations

Configuration 1 (hide)

cpe:2.3:a:bentley:microstation_connect:*:*:*:*:*:*:*:*

History

13 Feb 2025, 17:15

Type Values Removed Values Added
Summary (en) Bentley Systems MicroStation Connect versions 10.17.0.209 and prior are vulnerable to an Out-of-Bounds Read when when parsing DGN files, which may allow an attacker to crash the product, disclose sensitive information, or execute arbitrary code. (en) Bentley Systems MicroStation Connect versions 10.17.0.209 and prior are vulnerable to an Out-of-Bounds Read when when parsing DGN files, which may allow an attacker to crash the product, disclose sensitive information, or execute arbitrary code.

21 Nov 2024, 07:23

Type Values Removed Values Added
Summary
  • (es) Las versiones 10.17.0.209 y anteriores de Bentley Systems MicroStation Connect son vulnerables a una lectura fuera de los límites al analizar archivos DGN, lo que puede permitir a un atacante bloquear el producto, revelar información confidencial o ejecutar código arbitrario.
References () https://www.bentley.com/advisories/be-2023-0003/ - () https://www.bentley.com/advisories/be-2023-0003/ -
References () https://www.cisa.gov/uscert/ics/advisories/icsa-22-293-01 - Third Party Advisory, US Government Resource () https://www.cisa.gov/uscert/ics/advisories/icsa-22-293-01 - Third Party Advisory, US Government Resource

02 Feb 2024, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-01-06 22:15

Updated : 2025-02-13 17:15


NVD link : CVE-2022-41613

Mitre link : CVE-2022-41613

CVE.ORG link : CVE-2022-41613


JSON object : View

Products Affected

bentley

  • microstation_connect
CWE
CWE-125

Out-of-bounds Read