CVE-2021-39523: Null Pointer Dereference
Published Sep 20, 2021
·Updated
An issue was discovered in libredwg through v0.10.1.3751. A NULL pointer dereference exists in the function checkPOLYLINEhandles() located in decode.c. It allows an attacker to cause Denial of Service.
Affected Software
1 affected component
GNU LibreDWG<=0.10.1.3751
Event History
Sep 20, 2021
CVE Published
via MITRE·03:26 PM
Data Sourced
via MITRE·03:26 PM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2021-39523.
2
What is the affected software?
The affected software is GNU LibreDWG up to version 0.10.1.3751.
3
What is the severity of CVE-2021-39523?
The severity of CVE-2021-39523 is medium with a CVSS score of 6.5.
4
What is the impact of this vulnerability?
This vulnerability allows an attacker to cause Denial of Service.
5
Is there a fix available for CVE-2021-39523?
At the moment, there is no information available about a fix for CVE-2021-39523. It is recommended to monitor the official project repository for updates.