First published: Mon Nov 18 2024(Updated: )
A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Teamcenter Visualization V2406 (All versions < V2406.0005), Tecnomatix Plant Simulation V2302 (All versions < V2302.0018), Tecnomatix Plant Simulation V2404 (All versions < V2404.0007). The affected applications contain a use-after-free vulnerability that could be triggered while parsing specially crafted WRL files. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-24244)
Credit: productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens Tecnomatix Plant Simulation | <2302.0018 | |
Siemens Tecnomatix Plant Simulation | >=2404.0<2404.0007 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-52568 is considered high due to its potential impact on system security.
To fix CVE-2024-52568, update your Teamcenter Visualization software to the latest version as specified in the security advisories.
CVE-2024-52568 affects specific versions of Teamcenter Visualization including v14.2, v14.3, v2312, and v2406 prior to their respective patch levels.
Vulnerable products include Siemens Tecnomatix Plant Simulation versions lower than 2302.0018 and versions between 2404.0 and 2404.0007.
Yes, CVE-2024-52568 is specifically related to Siemens Teamcenter Visualization and associated Tecnomatix Plant Simulation software.