First published: Tue Feb 22 2022(Updated: )
A vulnerability has been identified in Simcenter Femap (All versions < V2022.1.1). Affected application contains a stack based buffer overflow vulnerability while parsing specially crafted BDF files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-15061)
Credit: productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens Simcenter Femap | <2022.1.1 | |
Siemens Simcenter Femap | ||
Siemens Simcenter Femap | <2022.1 | 2022.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this Siemens Simcenter Femap vulnerability is CVE-2021-46699.
CVE-2021-46699 has a severity level of 7.8 (high).
Remote attackers can exploit CVE-2021-46699 by executing arbitrary code on affected installations of Siemens Simcenter Femap through user interaction, such as visiting a malicious page or opening a malicious file.
CVE-2021-46699 affects Siemens Simcenter Femap versions up to and excluding 2022.1.1.
Yes, a fix is available for CVE-2021-46699. Please refer to the vendor's security advisory for more information.