First published: Tue Feb 13 2024(Updated: )
A vulnerability has been identified in Simcenter Femap (All versions < V2306.0000). The affected application is vulnerable to uninitialized pointer access while parsing specially crafted Catia MODEL files. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-22060)
Credit: productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens Simcenter Femap | <2306.0000 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-24925 is classified as a critical severity vulnerability due to the potential for remote code execution.
To fix CVE-2024-24925, you should update Simcenter Femap to version 2306.0000 or later.
CVE-2024-24925 is specifically associated with parsing specially crafted Catia MODEL files.
An attacker can exploit CVE-2024-24925 to execute arbitrary code in the context of the current process.
All versions of Simcenter Femap prior to 2306.0000 are affected by CVE-2024-24925.