CVE-2021-37180
7.8HIGHA vulnerability has been identified in Solid Edge SE2021 (All Versions < SE2021MP7). The PSKERNEL.dll library lacks proper validation while parsing user-supplied OBJ files that could cause an out of b
게시됨: 8/10/2021업데이트됨: 11/21/2024
설명
A vulnerability has been identified in Solid Edge SE2021 (All Versions < SE2021MP7). The PSKERNEL.dll library lacks proper validation while parsing user-supplied OBJ files that could cause an out of bounds access to an uninitialized pointer. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-13775)
AI 분석AI 기반
영향받는 제품
siemenssolid_edge_se2021_firmware
siemenssolid_edge_se2021
-
참조
- https://cert-portal.siemens.com/productcert/pdf/ssa-818688.pdfPatchVendor Advisory
- https://www.zerodayinitiative.com/advisories/ZDI-21-1113/Third Party AdvisoryVDB Entry
- https://cert-portal.siemens.com/productcert/pdf/ssa-818688.pdfPatchVendor Advisory
- https://www.zerodayinitiative.com/advisories/ZDI-21-1113/Third Party AdvisoryVDB Entry