Headline
CVE-2022-2069
The APDFL.dll in Siemens JT2Go prior to V13.3.0.5 and Siemens Teamcenter Visualization prior to V14.0.0.2 contains an out of bounds write past the fixed-length heap-based buffer while parsing specially crafted PDF files. This could allow an attacker to execute code in the context of the current process.
%PDF-1.5 %���� 61 0 obj << /Length 2885 /Filter /FlateDecode >> stream x��Z�s�H�_�ۡ�f��Խh’�\>|�����>` �\���oﯿ�A�)%[[)40=���Bo��볟�g篸�t�%����SaI�)�A�7_z���4Y’�r2�*�o�Ů�L����O;4[~I�Y軡� �߷�_�r��…o&��|��������3�yf@�o�>��{�-��/���’�����3�ϼ۳��N��ڢ��)!�0�C4#h��$�~�`��J5$t@d�t;�FT+�8�:fqX%�o��*�����H6$�"ޖ�e\�Y�J��E��c�P��?�"�$C�r�;2�?�2 "j��*͒�%86קp�@�T<dhi���� .&Ne�Y��(rFO�1��=���C20&Ҷ’2�w�&)��4CX8��(�X4V�#�2j�- “xs@$ݖ#��0ίUt��9��"��62��HL��s��ɦJ�^H5��`�"�r2�8 (���i����q��~�"5f}����UR�!AE@�mOd8+�2ěe���’qE��!�@Mb�s &#���͜�� ���I�SB���#θC����Y���3Y�A��yĩ�N�����a�>(���qY�9wۥ�%!nV4 u߬�]Q��ډ’�oQ��0���I@z�}�����0x�����+4y���� ��@�T=h�U�{l/�n��*�3��ݻw����_q��!A�v�#��bo�nVY�(i0V#��`;�`(2nk�Y/0�q����^�E�,�H]�٩��|W���R��,Ou����_�O�O����L�� Z%�eLy�0�F����Wo�X����g�0�"�>���5*"�^̿z�c{ٕ��KK{��_駋 %�g�E7Or{ͷɦEd *]���P>ph�C�%��)��G7d�Kj��̭-mA1%��B:e���x���1uU�"�eK{�%���K�M�ݶ��ȂӬ�G�Kp�n� �&�����nf\ܧճ����"_�Et��Z����A��Q$U�ֺ��Tr�167�/�4z�� ��Q�a\�ʕʅ�\Gи=�"_ÊKG�ȷ_þ\���g�|e~�P���X-8�”]����Z���!D{��g�^]^�/_����P�YvBT��FBF1/I�b�a}�������˻��m�J��4��l�Ɛ��%jP &��}��)�7Nb�Rf��8* !b�q�0Z��~x{7����g1�PO��*�Kk-[�h�� ��DC (�CJ�H��P?3Y��Ap��Oy���ܴ��@*��28N)n�IM�H��F���q���G�`�N�k�} � �w��J7˺�X�ؽ�ɡOi���h}P ;v&OU9�ok�~�)�x��b��