CVE-2021-44017: Siemens JT2Go TIF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
A vulnerability has been identified in JT2Go (All versions < V13.2.0.5), Teamcenter Visualization (All versions < V13.2.0.5). The Image.dll is vulnerable to an out of bounds read past the end of an allocated buffer when parsing specially crafted TIF files. An attacker could leverage this vulnerability to leak information in the context of the current process. (ZDI-CAN-15111)
Other sources
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Siemens JT2Go. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of TIF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2021-44017?
CVE-2021-44017 is a vulnerability that allows remote attackers to disclose sensitive information on affected installations of Siemens JT2Go.
How can this vulnerability be exploited?
This vulnerability can be exploited by visiting a malicious page or opening a malicious file.
What is the severity of CVE-2021-44017?
The severity of CVE-2021-44017 is medium, with a CVSS score of 5.5.
Which versions of Siemens JT2Go are affected by this vulnerability?
Siemens JT2Go versions up to and excluding 13.2.0.5 are affected by this vulnerability.
Where can I find more information about CVE-2021-44017?
You can find more information about CVE-2021-44017 at the following references: [link](https://cert-portal.siemens.com/productcert/pdf/ssa-595101.pdf), [link](https://www.zerodayinitiative.com/advisories/ZDI-22-011/), [link](https://www.cisa.gov/uscert/ics/advisories/icsa-21-350-10).