Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A vulnerability has been identified in JT2Go (All versions < V13.2.0.5), Teamcenter Visualization (All versions < V13.2.0.5). The VCRUNTIME140.dll is vulnerable to an out of bounds read past the end of an allocated buffer when parsing specially crafted CGM files. An attacker could leverage this vulnerability to leak information in the context of the current process. (ZDI-CAN-15109)
CVSS Information
N/A
Vulnerability Type
跨界内存读
Vulnerability Title
Siemens Jt2go 缓冲区错误漏洞
Vulnerability Description
Siemens Jt2go是德国Siemens公司的一款JT文件查看器。该软件用于三维图形轻量化预览,可进行3D缩放、全景、旋转、缩放和重定位,具有精确3D测量、基本3D剖面查看、改进的选项过滤器等多种功能。 JT2Go(所有版本 < V13.2.0.5)和 Teamcenter Visualization(所有版本 < V13.2.0.5)中存在缓冲区错误漏洞,该漏洞源于在解析特别制作的CGM文件时,VCRUNTIME140.dll容易受到超出已分配缓冲区末尾读取的攻击。攻击者可利用该漏洞泄漏当前进程上
CVSS Information
N/A
Vulnerability Type
N/A