VendorsGNUlibredwg0.9.2
Vulnerabilities

GNU Libredwg 0.9.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2019-20011
An issue was discovered in GNU LibreDWG 0.92. There is a heap-based buffer over-read in decode_R13_R2000 in decode.c.
Published 2019-12-27 · Modified
8.8EPSS 0.015
CVE-2019-20010
An issue was discovered in GNU LibreDWG 0.92. There is a use-after-free in resolve_objectref_vector in decode.c.
Published 2019-12-27 · Modified
8.8EPSS 0.014
CVE-2019-20012
An issue was discovered in GNU LibreDWG 0.92. Crafted input will lead to an attempted excessive memory allocation in dwg_decode_HATCH_private in dwg.spec.
Published 2019-12-27 · Modified
6.5EPSS 0.014
CVE-2019-20015
An issue was discovered in GNU LibreDWG 0.92. Crafted input will lead to an attempted excessive memory allocation in dwg_decode_LWPOLYLINE_private in dwg.spec.
Published 2019-12-27 · Modified
6.5EPSS 0.014