CVE-2020-6615: Null Pointer Dereference
Published Jan 8, 2020
·Updated
GNU LibreDWG 0.9.3.2564 has an invalid pointer dereference in dwgdynapientityvalue in dynapi.c (dynapi.c is generated by gen-dynapi.pl).
Affected Software
3 affected components
GNU LibreDWG=0.9.3.2564
openSUSE Backports SLE=15.0-sp1
openSUSE Leap=15.1
Event History
Jan 8, 2020
CVE Published
via MITRE·08:43 PM
Data Sourced
via MITRE·08:43 PM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-6615?
CVE-2020-6615 is considered a moderate severity vulnerability due to its potential to cause application crashes.
2
How do I fix CVE-2020-6615?
To fix CVE-2020-6615, update GNU LibreDWG to the latest version that addresses this vulnerability.
3
What are the potential impacts of CVE-2020-6615?
The potential impacts of CVE-2020-6615 include application instability and denial of service due to the invalid pointer dereference.
4
Which software versions are affected by CVE-2020-6615?
CVE-2020-6615 affects GNU LibreDWG version 0.9.3.2564 and specific versions of openSUSE Backports and Leap.
5
Is there a known workaround for CVE-2020-6615?
There are no known workarounds for CVE-2020-6615; updating the software is the recommended action.