CNNVD-202508-1040 Information
CNNVD ID
CNNVD-202508-1040
Related CVE
- CNNVD Published: 2025-08-12
Description (Chinese)
Siemens Simcenter Femap是德国西门子(Siemens)公司的一款尖端工程学仿真应用程序。用于创建、编辑和导入/重用复杂产品或系统基于网格的有限元分析模型。 Siemens Simcenter Femap V2406 V2406.0003之前版本和Siemens Simcenter Femap V2412 V2412.0002之前版本存在缓冲区错误漏洞,该漏洞源于解析BMP文件时越界读取,可能导致执行任意代码。
Description (English)
Siemens Simcenter Femap is a sophisticated engineering simulation application by Siemens, Germany. Limited meta-analysis models for creating, editing and importing/reusing complex products or systems based on grids. Before Siemens Simcenter V2406 V2406.0003, and before Siemens Simcenter Femap V2412 V2412.0002, there was an error hole in the buffer zone, which resulted from cross-reading of the BMP file and could lead to the implementation of any code.
Hazard Level
Medium
Vulnerability Type
缓冲区错误
Affected Vendor
西门子
Published
2025-08-12
Last Modified
2026-02-24
References
https://cert-portal.siemens.com/productcert/html/ssa-674084.html https://nvd.nist.gov/vuln/detail/CVE-2025-40764
Patch
https://cert-portal.siemens.com/productcert/html/ssa-674084.html
Share on: