CVE-2023-22846: Datakit CrossCAD/Ware
Datakit CrossCadWarex64.dll contains an out-of-bounds read past the end of an allocated buffer while parsing a specially crafted SLDPRT file. This vulnerability could allow an attacker to disclose sensitive information.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2023-22846?
CVE-2023-22846 is a vulnerability found in Datakit CrossCadWare_x64.dll that allows an attacker to disclose sensitive information by exploiting an out-of-bounds read past the end of an allocated buffer.
What is the severity of CVE-2023-22846?
The severity of CVE-2023-22846 is rated as medium with a severity value of 5.5.
How does CVE-2023-22846 impact Datakit CrossCadWare?
CVE-2023-22846 can impact Datakit CrossCadWare by potentially disclosing sensitive information.
How can I fix CVE-2023-22846?
To fix CVE-2023-22846, it is recommended to update to a version of Datakit CrossCadWare that is not affected by the vulnerability.
Where can I find more information about CVE-2023-22846?
For more information about CVE-2023-22846, you can refer to the following reference: https://www.cisa.gov/news-events/ics-advisories/icsa-23-103-14