LibreDWG 0.12.4.4313 through 0.12.4.4367 has an out-of-bounds write in dwg_free_BLOCK_private (called from dwg_free_BLOCK and dwg_free_object).
References
Link | Resource |
---|---|
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/libredwg/OSV-2021-814.yaml | Exploit Third Party Advisory |
https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=34766 | Exploit Issue Tracking Third Party Advisory |
Configurations
Information
Published : 2021-12-31 16:15
Updated : 2022-01-11 08:00
NVD link : CVE-2021-45950
Mitre link : CVE-2021-45950
JSON object : View
CWE
CWE-787
Out-of-bounds Write
Products Affected
gnu
- libredwg