CVE-2022-29028

MEDIUM

JT2Go, Teamcenter Visualization <13.3.0.3, 14.0.0.1 - DoS

Title source: llm
STIX 2.1

Description

A vulnerability has been identified in JT2Go (All versions < V13.3.0.3), Teamcenter Visualization V13.3 (All versions < V13.3.0.3), Teamcenter Visualization V14.0 (All versions < V14.0.0.1). The Tiff_Loader.dll is vulnerable to infinite loop condition while parsing specially crafted TIFF files. An attacker could leverage this vulnerability to crash the application causing denial of service condition.

Scores

CVSS v3 5.5
EPSS 0.0016
EPSS Percentile 37.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Details

CWE
CWE-835
Status published
Products (2)
siemens/jt2go < 13.3.0.3
siemens/teamcenter_visualization 13.3 - 13.3.0.3
Published May 20, 2022
Tracked Since Feb 18, 2026