First published: Tue Oct 11 2022(Updated: )
Due to lack of proper memory management, when a victim opens manipulated CATIA4 Part (.model, CatiaTranslator.exe) file received from untrusted sources in SAP 3D Visual Enterprise Author - version 9, it is possible for the application to crash and becomes temporarily unavailable to the user until restart of the application.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP 3D Visual Enterprise Author | =9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-41171 is a vulnerability that occurs due to a lack of proper memory management in SAP 3D Visual Enterprise Author version 9.
CVE-2022-41171 can cause the application to crash and become temporarily unavailable when a manipulated CATIA4 Part file is opened from untrusted sources.
CVE-2022-41171 has a severity rating of medium (5.5).
To fix CVE-2022-41171, ensure that you are using the latest version of SAP 3D Visual Enterprise Author and avoid opening manipulated CATIA4 Part files from untrusted sources.
Yes, you can find references for CVE-2022-41171 at the following links: [Reference 1](https://launchpad.support.sap.com/#/notes/3245929), [Reference 2](https://www.sap.com/documents/2022/02/fa865ea4-167e-0010-bca6-c68f7e60039b.html).