CVE-2022-41613

Bentley Systems MicroStation Connect versions 10.17.0.209 and prior are vulnerable to an Out-of-Bounds Read when when parsing DGN files, which may allow an attacker to crash the product, disclose sensitive information, or execute arbitrary code.
Configurations

Configuration 1 (hide)

cpe:2.3:a:bentley:microstation_connect:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:23

Type Values Removed Values Added
References () https://www.bentley.com/advisories/be-2023-0003/ - () https://www.bentley.com/advisories/be-2023-0003/ -
References () https://www.cisa.gov/uscert/ics/advisories/icsa-22-293-01 - Third Party Advisory, US Government Resource () https://www.cisa.gov/uscert/ics/advisories/icsa-22-293-01 - Third Party Advisory, US Government Resource

02 Feb 2024, 06:15

Type Values Removed Values Added
References
  • () https://www.bentley.com/advisories/be-2023-0003/ -

07 Nov 2023, 03:52

Type Values Removed Values Added
Summary Bentley Systems MicroStation Connect versions 10.17.0.209 and prior are vulnerable to an Out-of-Bounds Read when when parsing DGN files, which may allow an attacker to crash the product, disclose sensitive information, or execute arbitrary code. Bentley Systems MicroStation Connect versions 10.17.0.209 and prior are vulnerable to an Out-of-Bounds Read when when parsing DGN files, which may allow an attacker to crash the product, disclose sensitive information, or execute arbitrary code.

Information

Published : 2023-01-06 22:15

Updated : 2024-11-21 07:23


NVD link : CVE-2022-41613

Mitre link : CVE-2022-41613

CVE.ORG link : CVE-2022-41613


JSON object : View

Products Affected

bentley

  • microstation_connect
CWE
CWE-125

Out-of-bounds Read