First published: Mon May 17 2021(Updated: )
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10 via read_2004_section_revhistory ../../src/decode.c:3051.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GNU LibreDWG | =0.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-21842 is a heap based buffer overflow vulnerability in GNU LibreDWG 0.10.
The severity of CVE-2020-21842 is high with a CVSS score of 8.8.
CVE-2020-21842 can be exploited to trigger a heap based buffer overflow in GNU LibreDWG 0.10, potentially leading to remote code execution.
The affected software is GNU LibreDWG 0.10.
Yes, a fix for CVE-2020-21842 is available. It is recommended to update to the latest version of GNU LibreDWG.