CVE-2021-28237: Buffer Overflow
Published Dec 2, 2021
·Updated
LibreDWG v0.12.3 was discovered to contain a heap-buffer overflow via decodepreR13.
Affected Software
1 affected component
GNU LibreDWG=0.12.3
Event History
Dec 2, 2021
CVE Published
via MITRE·09:47 PM
Data Sourced
via MITRE·09:47 PM
Description
Frequently Asked Questions
1
What is CVE-2021-28237?
CVE-2021-28237 refers to a heap-buffer overflow vulnerability in LibreDWG v0.12.3.
2
How severe is CVE-2021-28237?
CVE-2021-28237 has a severity rating of 9.8 (critical).
3
What software is affected by CVE-2021-28237?
GNU LibreDWG version 0.12.3 is affected by CVE-2021-28237.
4
How can I fix CVE-2021-28237?
Updating to a version of LibreDWG that is not affected by CVE-2021-28237 or applying the necessary patches is recommended to fix this vulnerability.
5
Where can I find more information about CVE-2021-28237?
You can find more information about CVE-2021-28237 at the following link: https://github.com/LibreDWG/libredwg/issues/325