CVE-2022-41279: Null Pointer Dereference
A vulnerability has been identified in JT2Go (All versions < V14.1.0.6), Teamcenter Visualization V13.2 (All versions < V13.2.0.12), Teamcenter Visualization V13.3 (All versions < V13.3.0.8), Teamcenter Visualization V14.0 (All versions < V14.0.0.4), Teamcenter Visualization V14.1 (All versions < V14.1.0.6). The CGMNISTLoader.dll contains a null pointer dereference vulnerability while parsing specially crafted CGM files. An attacker could leverage this vulnerability to crash the application causing denial of service condition.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-41279?
The severity of CVE-2022-41279 is medium, with a severity value of 3.3.
What software versions are affected by CVE-2022-41279?
JT2Go versions before V14.1.0.6 and Teamcenter Visualization versions before V13.2.0.12, V13.3.0.8, V14.0.0.4, and V14.1.0.6 are affected by CVE-2022-41279.
How can I fix CVE-2022-41279?
To fix CVE-2022-41279, update JT2Go to V14.1.0.6 or later and update Teamcenter Visualization to V13.2.0.12, V13.3.0.8, V14.0.0.4, or V14.1.0.6.
What is the Common Vulnerabilities and Exposures (CVE) ID for this vulnerability?
The Common Vulnerabilities and Exposures (CVE) ID for this vulnerability is CVE-2022-41279.
What is the CWE ID for this vulnerability?
The CWE ID for this vulnerability is CWE-476.