CVE-2025-40764Out-of-bounds Read in Siemens Simcenter Femap V2406

CWE-125Out-of-bounds Read3 documents3 sources
Severity
7.3HIGHNVD
EPSS
0.0%
top 95.39%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 12

Description

A vulnerability has been identified in Simcenter Femap V2406 (All versions < V2406.0003), Simcenter Femap V2412 (All versions < V2412.0002). The affected applications contains an out of bounds read vulnerability while parsing specially crafted BMP files. This could allow an attacker to execute code in the context of the current process.

CVSS vector

CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Affected Packages3 packages

CVEListV5siemens/simcenter_femap_v2406< V2406.0003
CVEListV5siemens/simcenter_femap_v2412< V2412.0002
NVDsiemens/simcenter_femap2406.00002406.0003+1

🔴Vulnerability Details

2
GHSA
GHSA-8xqm-jhv6-rhhg: A vulnerability has been identified in Simcenter Femap V2406 (All versions < V24062025-08-12
CVEList
CVE-2025-40764: A vulnerability has been identified in Simcenter Femap V2406 (All versions < V24062025-08-12
CVE-2025-40764 — Out-of-bounds Read in Siemens | cvebase