CVE-2022-47936

CVSS V2 None CVSS V3 None
Description
A vulnerability has been identified in JT Open (All versions < V11.2.3.0), JT Utilities (All versions < V13.2.3.0), Parasolid V34.0 (All versions < V34.0.252), Parasolid V34.1 (All versions < V34.1.242), Parasolid V35.0 (All versions < V35.0.170), Parasolid V35.1 (All versions < V35.1.150). The affected application contains a stack overflow vulnerability while parsing specially crafted JT files. This could allow an attacker to execute code in the context of the current process.
Overview
  • CVE ID
  • CVE-2022-47936
  • Assigner
  • productcert@siemens.com
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2023-02-14T11:15:14
  • Last Modified Date
  • 2023-02-22T16:12:32
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:a:siemens:jt_open_toolkit:*:*:*:*:*:*:*:* 1 OR 11.2.3.0
cpe:2.3:a:siemens:jt_utilities:*:*:*:*:*:*:*:* 1 OR 11.2.3.0
cpe:2.3:a:siemens:parasolid:*:*:*:*:*:*:*:* 1 OR 34.0 34.0.252
cpe:2.3:a:siemens:parasolid:*:*:*:*:*:*:*:* 1 OR 34.1 34.1.242
cpe:2.3:a:siemens:parasolid:*:*:*:*:*:*:*:* 1 OR 35.0 35.0.170
cpe:2.3:a:siemens:parasolid:*:*:*:*:*:*:*:* 1 OR 35.1 35.1.150
References
Reference URL Reference Tags
https://cert-portal.siemens.com/productcert/pdf/ssa-836777.pdf Vendor Advisory
History
Created Old Value New Value Data Type Notes
2023-04-17 07:41:09 Added to TrackCVE
2023-04-17 07:41:11 Weakness Enumeration new