CVE-2022-41182: Buffer Overflow
Due to lack of proper memory management, when a victim opens manipulated Parasolid Part and Assembly (.xb, CoreCadTranslator.exe) file received from untrusted sources in SAP 3D Visual Enterprise Author - version 9, it is possible for the application to crash and becomes temporarily unavailable to the user until restart of the application.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-41182?
CVE-2022-41182 is a vulnerability in SAP 3D Visual Enterprise Author version 9 that allows a manipulated Parasolid file to cause the application to crash and become temporarily unavailable.
How does CVE-2022-41182 occur?
CVE-2022-41182 occurs due to a lack of proper memory management when opening a manipulated Parasolid file in SAP 3D Visual Enterprise Author version 9.
What is the severity of CVE-2022-41182?
CVE-2022-41182 has a severity rating of medium with a CVSS score of 5.5.
How can I fix CVE-2022-41182?
To fix CVE-2022-41182, update to the latest version of SAP 3D Visual Enterprise Author.
What are the references for CVE-2022-41182?
The references for CVE-2022-41182 are: [1] SAP Note 3245929, [2] SAP advisory document.