A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions), Tecnomatix Plant Simulation V2302 (All versions < V2302.0007). The affected applications contain a null pointer dereference vulnerability while parsing specially crafted SPP files. An attacker could leverage this vulnerability to crash the application causing denial of service condition.
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
https://cert-portal.siemens.com/productcert/html/ssa-017796.html | patch vendor advisory mitigation |