CVE-2021-44003: Medium severity siemens jt2go vulnerability
Published Dec 14, 2021
·Updated
A vulnerability has been identified in JT2Go (All versions < V13.2.0.5), Teamcenter Visualization (All versions < V13.2.0.5). The TiffLoader.dll is vulnerable to use of uninitialized memory while parsing user supplied TIFF files. This could allow an attacker to cause a denial-of-service condition.
Affected Software
4 affected componentsFixes available
Siemens JT2Go<13.2.0.5
Siemens Teamcenter Visualization<13.2.0.5
Siemens JT2Go<13.2.0.5
13.2.0.5
Siemens Teamcenter Visualization<13.2.0.5
13.2.0.5
Remediation
Event History
Dec 14, 2021
CVE Published
via MITRE·12:06 PM
Data Sourced
via MITRE·12:06 PM
DescriptionWeakness
Data Sourced
via NVD·12:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2021-44003.
2
Which software versions are affected by this vulnerability?
All versions of JT2Go and Teamcenter Visualization prior to V13.2.0.5 are affected.
3
What is the impact of this vulnerability?
This vulnerability could allow an attacker to cause a denial-of-service condition.
4
What is the severity of CVE-2021-44003?
The severity of this vulnerability is medium, with a CVSS score of 5.5.
5
How can I fix this vulnerability?
Update your JT2Go and Teamcenter Visualization software to version V13.2.0.5 or newer.