Out-of-bounds read in Parasolid and Simcenter Femap - CVE-2022-39137
Published: September 15, 2022 / Updated: September 18, 2022
Vulnerability details
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to a boundary condition when parsing X_T files. A remote attacker can create a specially crafted file, trick the victim into opening it, trigger out-of-bounds read error and read contents of memory on the system.
Affected software
Simcenter Femap
How to mitigate CVE-2022-39137
Simcenter Femap - addressed in versions 2022.1.3, 2022.2.2