Description
When a user opens manipulated Graphics Interchange Format (.GIF) format files received from untrusted sources in SAP 3D Visual Enterprise Viewer version 9, the application crashes and becomes temporarily unavailable to the user until restart of the application.
References (18)
Core 18
Core References
Third Party Advisory, Vendor Advisory x_refsource_misc
https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=571343107
Permissions Required, Third Party Advisory, Vendor Advisory x_refsource_misc
https://launchpad.support.sap.com/#/notes/3027758
Third Party Advisory x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-21-293/
Third Party Advisory x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-21-304/
Third Party Advisory x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-21-297/
Third Party Advisory x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-21-305/
Third Party Advisory x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-21-309/
Third Party Advisory x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-21-295/
Third Party Advisory x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-21-303/
Third Party Advisory x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-21-290/
Third Party Advisory x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-21-289/
Third Party Advisory x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-21-301/
Third Party Advisory x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-21-302/
Third Party Advisory x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-21-300/
Third Party Advisory x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-21-291/
Third Party Advisory x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-21-296/
Third Party Advisory x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-21-307/
Third Party Advisory x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-21-308/
Scores
CVSS v3
3.3
EPSS
0.0020
EPSS Percentile
41.2%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
Details
Status
published
Products (1)
sap/3d_visual_enterprise_viewer
9
Published
Mar 09, 2021
Tracked Since
Feb 18, 2026