CVE-2024-45465: High severity siemens tecnomatix plant simulation vulnerability
A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404 (All versions < V2404.0005). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted WRL files. This could allow an attacker to execute code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-45465?
CVE-2024-45465 has been classified as a high-severity vulnerability.
How do I fix CVE-2024-45465?
To mitigate CVE-2024-45465, upgrade to Teamcenter Visualization V14.2.0.14 or later, V14.3.0.12 or later, V2312.0008 or later, and Tecnomatix Plant Simulation V2302.0016 or later.
What versions of software are affected by CVE-2024-45465?
CVE-2024-45465 affects all versions of Teamcenter Visualization prior to V14.2.0.14 and V14.3.0.12, as well as certain versions of Tecnomatix Plant Simulation.
Is there a workaround for CVE-2024-45465?
There is no publicly disclosed workaround for CVE-2024-45465; the recommended action is to update the affected software.
What types of systems are impacted by CVE-2024-45465?
CVE-2024-45465 impacts systems using specific versions of Teamcenter Visualization and Tecnomatix Plant Simulation software.