CVE-2022-1404: Delta Electronics CNCSoft Out-of-bounds Read
Published Aug 31, 2022
·Updated
Delta Electronics CNCSoft (All versions prior to 1.01.32) does not properly sanitize input while processing a specific project file, allowing a possible out-of-bounds read condition.
Affected Software
2 affected componentsFixes available
Delta Electronics CNCSoft<1.01.32
1.01.32
Deltaww Cncsoft<1.01.32
Remediation
Patch Available
Event History
Aug 31, 2022
CVE Published
via MITRE·03:33 PM
Data Sourced
via MITRE·03:33 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for the CNCSoft vulnerability?
The vulnerability ID for the CNCSoft vulnerability is CVE-2022-1404.
2
What is the title of the CNCSoft vulnerability?
The title of the CNCSoft vulnerability is Delta Electronics CNCSoft (All versions prior to 1.01.32) does not properly sanitize input while processing a specific project file, allowing a possible out-of-bounds read condition.
3
What is the severity of CVE-2022-1404?
The severity of CVE-2022-1404 is high with a severity value of 7.1.
4
What software versions are affected by CVE-2022-1404?
All versions of Delta Electronics CNCSoft prior to 1.01.32 are affected by CVE-2022-1404.
5
How can I fix the CNCSoft vulnerability?
To fix the CNCSoft vulnerability, update to version 1.01.32 or later of Delta Electronics CNCSoft.