Description
A vulnerability has been identified in JT2Go (All versions < V13.2.0.5), Teamcenter Visualization (All versions < V13.2.0.5). The Tiff_Loader.dll contains an off-by-one error in the heap while parsing specially crafted TIFF files. This could allow an attacker to cause a denial-of-service condition.
Scores
CVSS v3
5.5
EPSS
0.0016
EPSS Percentile
37.0%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Details
CWE
CWE-193
Status
published
Products (2)
siemens/jt2go
< 13.2.0.5
siemens/teamcenter_visualization
< 13.2.0.5
Published
Dec 14, 2021
Tracked Since
Feb 18, 2026