Use After Free Vulnerability in JT Utilities and JTTK from Siemens
CVE-2021-44433
7.8HIGH
Summary
A use after free vulnerability has been found in JT Utilities and JTTK that may be exploited via specially crafted JT files. When parsing these files, an attacker could potentially execute code within the context of the running process, posing significant risks to system integrity and security. It is crucial for users of these affected products to apply the recommended updates promptly to mitigate potential threats.
Affected Version(s)
JT Utilities All versions < V13.1.1.0
JTTK All versions < V11.1.1.0
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved