CVE-2024-32636: High severity siemens jt2go vulnerability
A vulnerability has been identified in JT2Go (All versions < V2312.0005), Teamcenter Visualization V14.2 (All versions < V14.2.0.12), Teamcenter Visualization V14.3 (All versions < V14.3.0.10), Teamcenter Visualization V2312 (All versions < V2312.0005). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted XT files. This could allow an attacker to execute code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-32636?
CVE-2024-32636 has been classified with a high severity rating due to its potential to expose sensitive data.
How do I fix CVE-2024-32636?
To mitigate CVE-2024-32636, update JT2Go to version V2312.0005 or higher and Teamcenter Visualization to the latest compatible versions.
Which versions are affected by CVE-2024-32636?
CVE-2024-32636 affects all versions of JT2Go prior to V2312.0005 and Teamcenter Visualization versions earlier than V14.2.0.12, V14.3.0.10, and V2312.0005.
Is CVE-2024-32636 exploitable remotely?
Yes, CVE-2024-32636 is exploitable remotely, allowing attackers to leverage the vulnerability from an external location.
What components are impacted by CVE-2024-32636?
CVE-2024-32636 impacts the JT2Go application and multiple versions of Teamcenter Visualization.