PT-2024-29626 · Siemens · Siemens Nx

Cloé Perrin

·

Published

2024-08-13

·

Updated

2024-09-03

·

CVE-2024-41908

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Siemens NX versions prior to V2406.3000
Description A vulnerability has been identified in the affected applications, which contains an out of bounds read vulnerability while parsing specially crafted PRT files. This could allow an attacker to crash the application or execute code in the context of the current process.
Recommendations For versions prior to V2406.3000, update to version V2406.3000 or later to resolve the issue. As a temporary workaround, consider restricting the use of PRT files until a patch is applied. Avoid using specially crafted PRT files in the affected application to minimize the risk of exploitation.

Fix

Out of bounds Read

Weakness Enumeration

Related Identifiers

CVE-2024-41908

Affected Products

Siemens Nx