Siemens has updates available to handle stack-based buffer overflow, heap-based buffer overflow, and improper restriction of operations within the bounds of a memory buffer vulnerabilities in its Teamcenter Visualization and JT2Go, according to a report with CISA.

Successful exploitation of these vulnerabilities, discovered by Michael Heinz and Nafiez, could lead the application to crash or lead to arbitrary code execution.

The following viewing and lifecycle management products are affected because they contain the APDFL library from Datalogics, which suffers from these vulnerabilities:

  • JT2Go: All versions prior to V14.1.0.5
  • Teamcenter Visualization V13.3: All versions prior to V13.3.0.8
  • Teamcenter Visualization V14.0: All versions prior to V14.0.0.4
  • Teamcenter Visualization V14.1: All versions prior to V14.1.0.5

In one issue, the APDFL.dll contains a stack-based buffer overflow vulnerability that could be triggered while parsing specially crafted PDF files. This could allow an attacker to execute code in the context of the current process.

Schneider Bold

CVE-2022-3159 is the case number assigned to this vulnerability, which has a CVSS v3 base score of 7.8.

In addition, the APDFL.dll contains an out-of-bounds write past the fixed-length heap-based buffer while parsing specially crafted PDF files. This could allow an attacker to execute code in the context of the current process.

CVE-2022-3160 is the case number assigned to this vulnerability, which has a CVSS v3 base score of 7.8.

Also, the APDFL.dll contains a memory corruption vulnerability while parsing specially crafted PDF files. This could allow an attacker to execute code in the context of the current process.

CVE-2022-3161 is the case number assigned to this vulnerability, which has a CVSS v3 base score of 7.8.

The product sees use mainly in the critical manufacturing sector, and on a global basis.

An attacker with low skill level cold leverage this low complexity vulnerability.

Siemens released updates for the affected products and recommends updating to the latest versions:

Siemens identified the following specific workaround and mitigation a user can apply to reduce risk: Do not open untrusted PDF files in JT2Go and Teamcenter Visualization.

As a general security measure, Siemens recommends protecting network access to devices with appropriate mechanisms. To operate the devices in a protected IT environment, Siemens recommends configuring the environment according to Siemens’ operational guidelines for industrial security and following the recommendations in the product manuals.

For more information, click on Siemens security advisory SSA-360681.

ISSSource

Pin It on Pinterest

Share This