First published: Mon May 17 2021(Updated: )
A heap based buffer overflow vulneraibility exists in GNU LibreDWG 0.10 via bit_calc_CRC ../../src/bits.c:2213.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GNU LibreDWG | =0.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-21830 is a heap based buffer overflow vulnerability in GNU LibreDWG 0.10.
CVE-2020-21830 has a severity rating of 8.8 (high).
CVE-2020-21830 allows an attacker to perform a heap based buffer overflow via bit_calc_CRC in the bits.c file of GNU LibreDWG 0.10.
At the time of writing, no official fix has been released for CVE-2020-21830. It is recommended to follow the official project's security advisories and apply any patches or updates as soon as they become available.
You can find more information about CVE-2020-21830 in the official CVE database or through the references provided: http://gnu.com and https://github.com/LibreDWG/libredwg/issues/188#issuecomment-574493134