CVE-2022-41278
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A vulnerability has been identified in JT2Go (All versions < V14.1.0.6), Teamcenter Visualization V13.2 (All versions < V13.2.0.12), Teamcenter Visualization V13.3 (All versions < V13.3.0.8), Teamcenter Visualization V14.0 (All versions < V14.0.0.4), Teamcenter Visualization V14.1 (All versions < V14.1.0.6). The CGM_NIST_Loader.dll contains a null pointer dereference vulnerability while parsing specially crafted CGM files. An attacker could leverage this vulnerability to crash the application causing denial of service condition.
Se ha identificado una vulnerabilidad en:
JT2Go (Todas las versiones < V14.1.0.6),
Teamcenter Visualization V13.2 (Todas las versiones < V13.2.0.12),
Teamcenter Visualization V13.3 (Todas las versiones < V13.3.0. 8),
Teamcenter Visualization V14.0 (todas las versiones < V14.0.0.4),
Teamcenter Visualization V14.1 (todas las versiones < V14.1.0.6).
CGM_NIST_Loader.dll contiene una vulnerabilidad de desreferencia de puntero nulo al analizar archivos CGM especialmente manipulados. Un atacante podría aprovechar esta vulnerabilidad para bloquear la aplicación y provocar una condición de Denegación de Servicio (DoS).
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-09-21 CVE Reserved
- 2022-12-13 CVE Published
- 2024-07-05 EPSS Updated
- 2024-08-03 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-476: NULL Pointer Dereference
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://cert-portal.siemens.com/productcert/pdf/ssa-700053.pdf | 2024-02-01 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Siemens Search vendor "Siemens" | Jt2go Search vendor "Siemens" for product "Jt2go" | < 14.1.0.6 Search vendor "Siemens" for product "Jt2go" and version " < 14.1.0.6" | - |
Affected
| ||||||
Siemens Search vendor "Siemens" | Teamcenter Visualization Search vendor "Siemens" for product "Teamcenter Visualization" | >= 13.2.0 < 13.2.0.12 Search vendor "Siemens" for product "Teamcenter Visualization" and version " >= 13.2.0 < 13.2.0.12" | - |
Affected
| ||||||
Siemens Search vendor "Siemens" | Teamcenter Visualization Search vendor "Siemens" for product "Teamcenter Visualization" | >= 13.3.0 < 13.3.0.8 Search vendor "Siemens" for product "Teamcenter Visualization" and version " >= 13.3.0 < 13.3.0.8" | - |
Affected
| ||||||
Siemens Search vendor "Siemens" | Teamcenter Visualization Search vendor "Siemens" for product "Teamcenter Visualization" | >= 14.0 < 14.0.0.4 Search vendor "Siemens" for product "Teamcenter Visualization" and version " >= 14.0 < 14.0.0.4" | - |
Affected
| ||||||
Siemens Search vendor "Siemens" | Teamcenter Visualization Search vendor "Siemens" for product "Teamcenter Visualization" | >= 14.1 < 14.1.0.6 Search vendor "Siemens" for product "Teamcenter Visualization" and version " >= 14.1 < 14.1.0.6" | - |
Affected
|