CVE-2020-21843: Buffer Overflow
Published May 17, 2021
·Updated
A heap based buffer overflow vulnerability exits in GNU LibreDWG 0.10 via bitreadRC ../../src/bits.c:318.
Affected Software
1 affected component
GNU LibreDWG=0.10
Remediation
Event History
May 17, 2021
CVE Published
via MITRE·09:03 PM
Data Sourced
via MITRE·09:03 PM
Description
Data Sourced
via NVD·10:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2020-21843?
CVE-2020-21843 is a heap based buffer overflow vulnerability in GNU LibreDWG 0.10.
2
How severe is CVE-2020-21843?
CVE-2020-21843 has a severity rating of 8.8, which is considered high.
3
What is the affected software?
The affected software is GNU LibreDWG 0.10.
4
How can I fix CVE-2020-21843?
To fix CVE-2020-21843, it is recommended to update to a patched version of GNU LibreDWG.
5
Where can I find more information about CVE-2020-21843?
You can find more information about CVE-2020-21843 at the following references: - [http://gnu.com](http://gnu.com) - [https://github.com/LibreDWG/libredwg/issues/188#issuecomment-574493857](https://github.com/LibreDWG/libredwg/issues/188#issuecomment-574493857)