PT-2026-57607 · Gnu · Libredwg
CVSS v3.1
5.3
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
GNU LibreDWG versions prior to 0.14.8396
Description
A heap-based buffer overflow occurs in the R2004 Section Decompression component within the
decompress R2004 section() function located in the src/decode.c file. This issue can be triggered through local access by executing a specific manipulation.Recommendations
Upgrade to version 0.14.8396.
Exploit
Fix
Heap Based Buffer Overflow
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Libredwg