CVE-2024-24921

A vulnerability has been identified in Simcenter Femap (All versions < V2401.0000). The affected application is vulnerable to memory corruption while parsing specially crafted Catia MODEL files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21712)
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:siemens:simcenter_femap:*:*:*:*:*:*:*:*

History

03 Oct 2024, 17:21

Type Values Removed Values Added
CWE CWE-787
References () https://cert-portal.siemens.com/productcert/html/ssa-000072.html - () https://cert-portal.siemens.com/productcert/html/ssa-000072.html - Vendor Advisory
CPE cpe:2.3:a:siemens:simcenter_femap:*:*:*:*:*:*:*:*
First Time Siemens
Siemens simcenter Femap

13 Feb 2024, 14:01

Type Values Removed Values Added
Summary
  • (es) Se ha identificado una vulnerabilidad en Simcenter Femap (Todas las versiones &lt; V2401.0000). La aplicación afectada es vulnerable a la corrupción de la memoria al analizar archivos Catia MODEL especialmente manipulados. Esto podría permitir a un atacante ejecutar código en el contexto del proceso actual. (ZDI-CAN-21712)

13 Feb 2024, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-13 09:15

Updated : 2024-10-03 17:21


NVD link : CVE-2024-24921

Mitre link : CVE-2024-24921

CVE.ORG link : CVE-2024-24921


JSON object : View

Products Affected

siemens

  • simcenter_femap
CWE
CWE-787

Out-of-bounds Write

CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer