CVE-2021-44015
Summary
| CVE | CVE-2021-44015 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-12-14 12:15:00 UTC |
| Updated | 2022-03-30 13:04:00 UTC |
| Description | A vulnerability has been identified in JT2Go (All versions < V13.2.0.5), Teamcenter Visualization (All versions < V13.2.0.5). The VCRUNTIME140.dll is vulnerable to an out of bounds read past the end of an allocated buffer when parsing specially crafted CGM files. An attacker could leverage this vulnerability to leak information in the context of the current process. (ZDI-CAN-15109) |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 590730 Siemens JT2Go Multiple Vulnerabilities (ICSA-21-350-10)
- 590752 Siemens JT2Go and Teamcenter Visualization Multiple Vulnerabilities (ICSA-21-350-10)
- 590753 Siemens JT2Go and Teamcenter Visualization Multiple Vulnerabilities (ICSA-21-350-10)