CVE-2022-29028: Medium severity siemens jt2go vulnerability
A vulnerability has been identified in JT2Go (All versions < V13.3.0.3), Teamcenter Visualization V13.3 (All versions < V13.3.0.3), Teamcenter Visualization V14.0 (All versions < V14.0.0.1). The TiffLoader.dll is vulnerable to infinite loop condition while parsing specially crafted TIFF files. An attacker could leverage this vulnerability to crash the application causing denial of service condition.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2022-29028?
The severity of CVE-2022-29028 is medium, with a severity value of 5.5.
How does CVE-2022-29028 affect Siemens JT2Go?
CVE-2022-29028 affects all versions of Siemens JT2Go prior to V13.3.0.3.
How does CVE-2022-29028 affect Siemens Teamcenter Visualization V13.3?
CVE-2022-29028 affects all versions of Siemens Teamcenter Visualization V13.3 prior to V13.3.0.3.
How does CVE-2022-29028 affect Siemens Teamcenter Visualization V14.0?
CVE-2022-29028 affects all versions of Siemens Teamcenter Visualization V14.0 prior to V14.0.0.1.
How do I fix CVE-2022-29028?
To fix CVE-2022-29028, update to JT2Go V13.3.0.3 or later, or update to Teamcenter Visualization V13.3.0.3 or V14.0.0.1 or later.