CVE-2021-44003
MEDIUMSiemens Jt2go < 13.2.0.5 - Use of Uninitialized Resource
Title source: ruleDescription
A vulnerability has been identified in JT2Go (All versions < V13.2.0.5), Teamcenter Visualization (All versions < V13.2.0.5). The Tiff_Loader.dll is vulnerable to use of uninitialized memory while parsing user supplied TIFF files. This could allow an attacker to cause a denial-of-service condition.
Scores
CVSS v3
5.5
EPSS
0.0016
EPSS Percentile
36.2%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Details
CWE
CWE-457
CWE-908
Status
published
Products (2)
siemens/jt2go
< 13.2.0.5
siemens/teamcenter_visualization
< 13.2.0.5
Published
Dec 14, 2021
Tracked Since
Feb 18, 2026