Vulnerability Description
A vulnerability has been identified in JT Utilities (All versions < V13.0.2.0). When parsing specially crafted JT files, a missing check for the validity of an iterator leads to NULL pointer deference condition, causing the application to crash. An attacker could leverage this vulnerability to cause a Denial-of-Service condition in the application.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Siemens | Jt Utilities | < 13.0.2.0 |
Related Weaknesses (CWE)
References
- https://cert-portal.siemens.com/productcert/pdf/ssa-209268.pdfVendor Advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-209268.pdfVendor Advisory
FAQ
What is CVE-2021-33714?
CVE-2021-33714 is a vulnerability with a CVSS score of 5.5 (MEDIUM). A vulnerability has been identified in JT Utilities (All versions < V13.0.2.0). When parsing specially crafted JT files, a missing check for the validity of an iterator leads to NULL pointer deference...
How severe is CVE-2021-33714?
CVE-2021-33714 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-33714?
Check the references section above for vendor advisories and patch information. Affected products include: Siemens Jt Utilities.