CVE-2022-32240: Input Validation
When a user opens manipulated Jupiter Tesselation (.jt, JTReader.x3d) files received from untrusted sources in SAP 3D Visual Enterprise Viewer, the application crashes and becomes temporarily unavailable to the user until restart of the application.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-32240?
CVE-2022-32240 is a vulnerability in SAP 3D Visual Enterprise Viewer that allows for a denial of service attack.
How does CVE-2022-32240 impact SAP 3D Visual Enterprise Viewer?
CVE-2022-32240 causes the application to crash and become temporarily unavailable when a user opens manipulated Jupiter Tesselation files received from untrusted sources.
What is the severity of CVE-2022-32240?
CVE-2022-32240 has a severity rating of 5.5, which is considered medium.
How can I fix CVE-2022-32240?
To fix CVE-2022-32240, it is recommended to update SAP 3D Visual Enterprise Viewer to version 9.0 or later.
Where can I find more information about CVE-2022-32240?
You can find more information about CVE-2022-32240 in the SAP Note 3206271 and the SAP security advisory.