CVE-2019-20014: Double Free
Published Dec 27, 2019
·Updated
An issue was discovered in GNU LibreDWG before 0.93. There is a double-free in dwgfree in free.c.
Affected Software
3 affected components
GNU LibreDWG<0.9.3
openSUSE Backports SLE=15.0-sp1
openSUSE Leap=15.1
Remediation
Patch Available
Event History
Dec 27, 2019
CVE Published
via MITRE·12:14 AM
Data Sourced
via MITRE·12:14 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-20014?
CVE-2019-20014 has a moderate severity due to its potential to cause memory corruption through double-free issues.
2
How do I fix CVE-2019-20014?
To mitigate CVE-2019-20014, upgrade GNU LibreDWG to version 0.9.3 or later.
3
Which versions of GNU LibreDWG are affected by CVE-2019-20014?
CVE-2019-20014 affects all versions of GNU LibreDWG prior to 0.9.3.
4
Is CVE-2019-20014 specific to any operating system?
CVE-2019-20014 is primarily impacting software on openSUSE systems and GNU LibreDWG itself.
5
What type of vulnerability is CVE-2019-20014?
CVE-2019-20014 is classified as a memory management vulnerability involving double-free errors.