PT-2026-25045 · Git+1 · Libredwg

CVE-2025-61154

·

Published

2026-03-12

·

Updated

2026-06-02

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions LibreDWG versions 0.13.3.7571 through 0.13.3.7835
Description A heap buffer overflow exists in LibreDWG. A specially crafted DWG file can lead to a Denial of Service (DoS) condition. The issue is located in the decompress R2004 section function within the decode.c file.
Recommendations LibreDWG versions 0.13.3.7571 through 0.13.3.7835 are affected and should be updated. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Heap Based Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-61154

Affected Products

Libredwg