PT-2022-6393 · Siemens · Teamcenter Visualization

Michael Heinz

+1

·

Published

2022-12-13

·

Updated

2023-01-23

·

CVE-2022-3159

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions APDFL.dll (affected versions not specified)
Description The issue is related to a stack-based buffer overflow in the APDFL.dll, which can be triggered by parsing specially crafted PDF files. This could allow an attacker to execute code in the context of the current process. The vulnerability is associated with the JT2Go 3D viewer tool and the Teamcenter Visualization product lifecycle management system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Stack Overflow

Weakness Enumeration

Related Identifiers

BDU:2023-01152
CVE-2022-3159

Affected Products

Teamcenter Visualization