CVE 7.8 HIGH

CVE-2025-40936_CVE-2025-40936

7.8 / 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Description

A vulnerability has been identified in PS/IGES Parasolid Translator Component (All versions < V29.0.258). The affected applications contains an out of bounds read vulnerability while parsing specially crafted IGS files. This could allow an attacker to crash the application or execute code in the context of the current process. (ZDI-CAN-26755)

Basic Information

ID CVE-2025-40936
Source siemens
Published Nov 17, 2025 at 11:39
Modified Nov 17, 2025 at 14:03

Affected Product

Vendor Siemens
Product PS/IGES Parasolid Translator Component
Affected Versions Siemens PS/IGES Parasolid Translator Component 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.