cbcvebase.
CVE-2024-53041
published 2024-12-10

CVE-2024-53041: A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12)…

high7.3CVSS 4.0
AVLACHATNPRNUIPVCHVIHVAHSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404 (All versions < V2404.0005). The affected applications contain a stack based overflow vulnerability while parsing specially crafted WRL files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-25000)

Affected

10 ranges
VendorProductVersion rangeFixed in
siemensteamcenter_visualization>= 14.2 < 14.2.0.1414.2.0.14
siemensteamcenter_visualization>= 14.3 < 14.3.0.1214.3.0.12
siemensteamcenter_visualization>= 2312.0 < 2312.00082312.0008
siemensteamcenter_visualization_v14.2< V14.2.0.14V14.2.0.14
siemensteamcenter_visualization_v14.3< V14.3.0.12V14.3.0.12
siemensteamcenter_visualization_v2312< V2312.0008V2312.0008
siemenstecnomatix_plant_simulation>= 2302.0 < 2302.00162302.0016
siemenstecnomatix_plant_simulation>= 2404.0 < 2404.00052404.0005
siemenstecnomatix_plant_simulation_v2302< V2302.0016V2302.0016
siemenstecnomatix_plant_simulation_v2404< V2404.0005V2404.0005