CVE-2024-34086: High severity siemens jt2go vulnerability
A vulnerability has been identified in JT2Go (All versions < V2312.0001), Teamcenter Visualization V14.1 (All versions < V14.1.0.13), Teamcenter Visualization V14.2 (All versions < V14.2.0.10), Teamcenter Visualization V14.3 (All versions < V14.3.0.7), Teamcenter Visualization V2312 (All versions < V2312.0001). The affected applications contain an out of bounds write vulnerability when parsing a specially crafted CGM file. This could allow an attacker to execute code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-34086?
CVE-2024-34086 is considered a critical vulnerability that affects multiple versions of Siemens software products.
How do I fix CVE-2024-34086?
To fix CVE-2024-34086, update JT2Go to version V2312.0001 or later and Teamcenter Visualization to the latest versions as specified.
Which versions are vulnerable to CVE-2024-34086?
All versions of JT2Go prior to V2312.0001 and Teamcenter Visualization versions prior to V14.1.0.13, V14.2.0.10, and V14.3.0.7 are vulnerable.
What software does CVE-2024-34086 impact?
CVE-2024-34086 impacts Siemens JT2Go and various versions of Siemens Teamcenter Visualization.
Is there a patch available for CVE-2024-34086?
Yes, patches are available to update affected software versions for CVE-2024-34086.