CVE-2024-52570: High severity siemens tecnomatix plant simulation vulnerability
A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Teamcenter Visualization V2406 (All versions < V2406.0005), Tecnomatix Plant Simulation V2302 (All versions < V2302.0018), Tecnomatix Plant Simulation V2404 (All versions < V2404.0007). The affected applications contain an out of bounds write vulnerability when parsing a specially crafted WRL file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-24365)
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-52570?
CVE-2024-52570 has been classified as a high severity vulnerability impacting multiple versions of Teamcenter Visualization and Tecnomatix Plant Simulation.
How do I fix CVE-2024-52570?
To address CVE-2024-52570, upgrade to Teamcenter Visualization V14.2.0.14 or higher, V14.3.0.12 or higher, V2312.0008 or higher, or V2406.0005 or higher, and ensure Tecnomatix Plant Simulation is updated accordingly.
Which products are affected by CVE-2024-52570?
CVE-2024-52570 affects Teamcenter Visualization versions below V14.2.0.14, V14.3.0.12, V2312.0008, V2406.0005, and specific versions of Tecnomatix Plant Simulation.
Is there a workaround for CVE-2024-52570?
There is no official workaround for CVE-2024-52570; it is recommended to upgrade to secure versions to mitigate the vulnerability.
What types of attacks can CVE-2024-52570 facilitate?
CVE-2024-52570 may facilitate unauthorized access or exploitation of sensitive information due to vulnerabilities present in the affected software versions.