CVE-2020-6611: Null Pointer Dereference
Published Jan 8, 2020
·Updated
GNU LibreDWG 0.9.3.2564 has a NULL pointer dereference in getnextownedentity in dwg.c.
Affected Software
3 affected components
GNU LibreDWG=0.9.3.2564
openSUSE Backports SLE=15.0-sp1
openSUSE Leap=15.1
Event History
Jan 8, 2020
CVE Published
via MITRE·08:43 PM
Data Sourced
via MITRE·08:43 PM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-6611?
CVE-2020-6611 is classified as a medium severity vulnerability due to the possibility of a NULL pointer dereference.
2
How do I fix CVE-2020-6611?
To fix CVE-2020-6611, update GNU LibreDWG to the latest version that addresses this vulnerability.
3
What is the impact of CVE-2020-6611 on affected systems?
CVE-2020-6611 can lead to application crashes and potential denials of service on affected systems.
4
Which versions of software are affected by CVE-2020-6611?
CVE-2020-6611 specifically affects GNU LibreDWG version 0.9.3.2564 and certain versions of openSUSE.
5
Is there a workaround for CVE-2020-6611?
Currently, the recommended solution for CVE-2020-6611 is to apply the appropriate software update as there are no known workarounds.