Out-of-Bounds Read Vulnerability in KeyShot Software by Luxion
CVE-2021-27490

7.8HIGH

Key Information:

Summary

The CatiaV5_3dRead, CatiaV6_3dRead, Step3dRead, Ug3dReadPsr, and Jt3dReadPsr modules within KeyShot versions prior to 10.1 are susceptible to an out-of-bounds read vulnerability. This flaw may permit attackers to execute arbitrary code, potentially compromising the integrity and security of systems utilizing affected KeyShot software. Immediate attention and patching are recommended to mitigate the risks associated with this vulnerability.

Affected Version(s)

Datakit Software libraries embedded in Luxion KeyShot software CatiaV5_3dRead, CatiaV6_3dRead, Step3dRead, Ug3dReadPsr, Jt3dReadPsr modules in KeyShot Versions v10.1 and prior

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.