Security Advisory

CVE-2023-24581

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-02-14 10:36:46
Last updated 2025-03-20 14:10:54
Assigner siemens
State PUBLISHED

Description

A vulnerability has been identified in Solid Edge SE2022 (All versions < V222.0MP12), Solid Edge SE2022 (All versions), Solid Edge SE2023 (All versions < V223.0Update2). The affected application contains a use-after-free vulnerability that could be triggered while parsing specially crafted STP files. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-19425)