CVE-2024-47046
https://notcve.org/view.php?id=CVE-2024-47046
A vulnerability has been identified in Simcenter Nastran 2306 (All versions), Simcenter Nastran 2312 (All versions), Simcenter Nastran 2406 (All versions < V2406.5000). The affected application is vulnerable to memory corruption while parsing specially crafted BDF files. This could allow an attacker to execute code in the context of the current process. • https://cert-portal.siemens.com/productcert/html/ssa-852501.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2024-41981
https://notcve.org/view.php?id=CVE-2024-41981
A vulnerability has been identified in Simcenter Nastran 2306 (All versions), Simcenter Nastran 2312 (All versions), Simcenter Nastran 2406 (All versions < V2406.5000). The affected application is vulnerable to heap-based buffer overflow while parsing specially crafted BDF files. This could allow an attacker to execute code in the context of the current process. • https://cert-portal.siemens.com/productcert/html/ssa-852501.html • CWE-122: Heap-based Buffer Overflow •