First published: Tue Jan 12 2021(Updated: )
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated PCX file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user restarts the application, this is caused due to Improper Input Validation.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP 3D Visual Enterprise Viewer | =9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-21464 is classified as a moderate severity vulnerability due to improper input validation leading to application crashes.
To mitigate CVE-2021-21464, ensure that users only open PCX files from trusted sources and follow best practices for application input validation.
CVE-2021-21464 affects SAP 3D Visual Enterprise Viewer version 9.
CVE-2021-21464 enables denial of service attacks by causing the application to crash upon processing manipulated PCX files.
A possible workaround for CVE-2021-21464 is to avoid opening PCX files from untrusted sources until a patch or update is available.