First published: Mon Sep 20 2021(Updated: )
An issue was discovered in libredwg through v0.10.1.3751. bit_read_fixed() in bits.c has a heap-based buffer overflow.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GNU LibreDWG | <=0.10.1.3751 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue in libredwg is CVE-2021-39525.
The severity of CVE-2021-39525 is high (8.8).
The affected software version for CVE-2021-39525 is libredwg v0.10.1.3751.
The CWE ID for CVE-2021-39525 is CWE-119 and CWE-787.
There is no information available regarding a fix for CVE-2021-39525. It is recommended to follow the updates from the official project.