CVE-2020-21832: Buffer Overflow
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10 via read2004compressedsection ../../src/decode.c:2417.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2020-21832?
The severity of CVE-2020-21832 is high with a CVSS score of 8.8.
How does CVE-2020-21832 impact GNU LibreDWG 0.10?
CVE-2020-21832 is a heap-based buffer overflow vulnerability in GNU LibreDWG 0.10, which could allow an attacker to execute arbitrary code or cause a denial of service.
What is the affected software for CVE-2020-21832?
GNU LibreDWG 0.10 is the affected software for CVE-2020-21832.
Is there a fix available for CVE-2020-21832?
At the time of writing this, there is no official fix available for CVE-2020-21832. It is recommended to update to a patched version when it becomes available.
Where can I find more information about CVE-2020-21832?
You can find more information about CVE-2020-21832 at the following references: [http://gnu.com](http://gnu.com), [https://github.com/LibreDWG/libredwg/issues/188#issuecomment-574492612](https://github.com/LibreDWG/libredwg/issues/188#issuecomment-574492612).