CVE-2021-21461: Input Validation
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated BMP file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user restarts the application, this is caused due to Improper Input Validation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-21461?
CVE-2021-21461 is considered a high-severity vulnerability due to the potential for application crashes.
How do I fix CVE-2021-21461?
To mitigate CVE-2021-21461, ensure that input BMP files are received from trusted sources and implement input validation.
What software versions are affected by CVE-2021-21461?
CVE-2021-21461 specifically affects version 9 of SAP 3D Visual Enterprise Viewer.
What happens if I open a manipulated BMP file in SAP 3D Visual Enterprise Viewer?
Opening a manipulated BMP file can cause SAP 3D Visual Enterprise Viewer to crash and become temporarily unavailable.
Is there a workaround for CVE-2021-21461?
A temporary workaround for CVE-2021-21461 is to avoid opening BMP files from untrusted sources.