First published: Tue Apr 11 2023(Updated: )
A vulnerability has been identified in JT Open (All versions < V11.3.2.0), JT Utilities (All versions < V13.3.0.0). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted JT files. This could allow an attacker to execute code in the context of the current process.
Credit: productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens JT Open Toolkit | <11.3.2.0 | |
Siemens JT Utilities | <13.3.0.0 | |
<11.3.2.0 | ||
<13.3.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-29053 is a vulnerability in JT Open and JT Utilities that allows an attacker to execute arbitrary code.
The severity of CVE-2023-29053 is high, with a severity value of 7.8.
CVE-2023-29053 affects JT Open versions older than V11.3.2.0 and JT Utilities versions older than V13.3.0.0.
An attacker can exploit CVE-2023-29053 by parsing specially crafted JT files that trigger an out of bounds read vulnerability.
Yes, Siemens has released a fix for CVE-2023-29053. Please refer to the provided reference link for more information.