CVE-2021-46156
Summary
| CVE | CVE-2021-46156 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-02-09 16:15:00 UTC |
| Updated | 2022-02-28 15:36:00 UTC |
| Description | A vulnerability has been identified in Simcenter Femap V2020.2 (All versions), Simcenter Femap V2021.1 (All versions). Affected application contains an out of bounds write past the end of an allocated structure while parsing specially crafted NEU files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-14684) |
Risk And Classification
Problem Types: CWE-787
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Siemens | Simcenter Femap | 2020.2 | - | All | All |
| Application | Siemens | Simcenter Femap | 2020.2 | maintenance_pack1 | All | All |
| Application | Siemens | Simcenter Femap | 2020.2 | maintenance_pack2 | All | All |
| Application | Siemens | Simcenter Femap | 2020.2 | maintenance_pack3 | All | All |
| Application | Siemens | Simcenter Femap | 2021.1 | - | All | All |
| Application | Siemens | Simcenter Femap | 2021.1 | maintenance_pack1 | All | All |
| Application | Siemens | Simcenter Femap | 2021.1 | maintenance_pack2 | All | All |
| Application | Siemens | Simcenter Femap | 2021.1 | maintenance_pack3 | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| ZDI-22-309 | Zero Day Initiative | MISC | www.zerodayinitiative.com | |
| cert-portal.siemens.com/productcert/pdf/ssa-609880.pdf | MISC | cert-portal.siemens.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.