High severity7.8NVD Advisory· Published Nov 8, 2022· Updated Jun 17, 2026
CVE-2022-43397
CVE-2022-43397
Description
A vulnerability has been identified in Parasolid V34.0 (All versions < V34.0.252), Parasolid V34.1 (All versions < V34.1.242), Parasolid V35.0 (All versions < V35.0.170), Simcenter Femap (All versions < V2023.1). The affected application contains an out of bounds write past the end of an allocated buffer while parsing specially crafted X_T files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-17854)
Affected products
7cpe:2.3:a:siemens:parasolid:*:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:siemens:parasolid:*:*:*:*:*:*:*:*range: >=34.0,<34.0.252
- (no CPE)range: < V34.0.252, < V34.1.242, < V35.0.170
- (no CPE)range: All versions < V34.0.252
- (no CPE)range: All versions < V34.1.242
- (no CPE)range: All versions < V35.0.170
< V2023.1+ 1 more
- (no CPE)range: < V2023.1
- (no CPE)range: All versions < V2023.1
Patches
Vulnerability mechanics
References
2- cert-portal.siemens.com/productcert/pdf/ssa-853037.pdfnvdMitigationPatchVendor Advisory
- cert-portal.siemens.com/productcert/pdf/ssa-565356.pdfnvd
News mentions
0No linked articles in our index yet.