A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21565)
References
Link | Resource |
---|---|
https://cert-portal.siemens.com/productcert/html/ssa-064222.html | Vendor Advisory |
https://cert-portal.siemens.com/productcert/html/ssa-976324.html | Vendor Advisory |
https://cert-portal.siemens.com/productcert/html/ssa-064222.html | Vendor Advisory |
https://cert-portal.siemens.com/productcert/html/ssa-976324.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
20 Aug 2025, 16:26
Type | Values Removed | Values Added |
---|---|---|
References | () https://cert-portal.siemens.com/productcert/html/ssa-064222.html - Vendor Advisory | |
References | () https://cert-portal.siemens.com/productcert/html/ssa-976324.html - Vendor Advisory | |
CPE | cpe:2.3:a:siemens:simcenter_femap:*:*:*:*:*:*:*:* cpe:2.3:a:siemens:ps\/iges_parasolid_translator:*:*:*:*:*:*:*:* |
|
First Time |
Siemens simcenter Femap
Siemens ps\/iges Parasolid Translator Siemens |
21 Nov 2024, 09:14
Type | Values Removed | Values Added |
---|---|---|
References | () https://cert-portal.siemens.com/productcert/html/ssa-064222.html - | |
References | () https://cert-portal.siemens.com/productcert/html/ssa-976324.html - |
09 Jul 2024, 12:15
Type | Values Removed | Values Added |
---|---|---|
Summary | (en) A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21565) | |
References |
|
14 May 2024, 19:17
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-05-14 16:16
Updated : 2025-08-20 16:26
NVD link : CVE-2024-32060
Mitre link : CVE-2024-32060
CVE.ORG link : CVE-2024-32060
JSON object : View
Products Affected
siemens
- ps\/iges_parasolid_translator
- simcenter_femap
CWE
CWE-125
Out-of-bounds Read