A vulnerability has been identified in JT Utilities (All versions < V13.0.2.0). When parsing specially crafted JT files, a missing check for the validity of an iterator leads to NULL pointer deference condition, causing the application to crash. An attacker could leverage this vulnerability to cause a Denial-of-Service condition in the application.
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
https://cert-portal.siemens.com/productcert/pdf/ssa-209268.pdf | vendor advisory |