CNNVD-202508-1040 Information

CNNVD ID

CNNVD-202508-1040

CVE-2025-40764

  • CNNVD Published: 2025-08-12

Description (Chinese)

Siemens Simcenter Femap是德国西门子(Siemens)公司的一款尖端工程学仿真应用程序。用于创建、编辑和导入/重用复杂产品或系统基于网格的有限元分析模型。 Siemens Simcenter Femap V2406 V2406.0003之前版本和Siemens Simcenter Femap V2412 V2412.0002之前版本存在缓冲区错误漏洞,该漏洞源于解析BMP文件时越界读取,可能导致执行任意代码。

Description (English)

Siemens Simcenter Femap is a sophisticated engineering simulation application by Siemens, Germany. Limited meta-analysis models for creating, editing and importing/reusing complex products or systems based on grids. Before Siemens Simcenter V2406 V2406.0003, and before Siemens Simcenter Femap V2412 V2412.0002, there was an error hole in the buffer zone, which resulted from cross-reading of the BMP file and could lead to the implementation of any code.

Hazard Level

Medium

Vulnerability Type

缓冲区错误

Affected Vendor

西门子

Published

2025-08-12

Last Modified

2026-02-24

References

https://cert-portal.siemens.com/productcert/html/ssa-674084.html https://nvd.nist.gov/vuln/detail/CVE-2025-40764

Patch

https://cert-portal.siemens.com/productcert/html/ssa-674084.html

Share on: