CVE-2021-44423: High severity open design alliance drawings explorer vulnerability
An out-of-bounds read vulnerability exists when reading a BMP file using Open Design Alliance (ODA) Drawings Explorer before 2022.12. The specific issue exists after loading BMP files. Unchecked input data from a crafted BMP file leads to an out-of-bounds read. An attacker can leverage this vulnerability to execute code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-44423?
CVE-2021-44423 is an out-of-bounds read vulnerability that exists when reading a BMP file using Open Design Alliance (ODA) Drawings Explorer before version 2022.12.
What is the severity of CVE-2021-44423?
The severity of CVE-2021-44423 is high with a CVSS score of 7.8.
How does CVE-2021-44423 occur?
CVE-2021-44423 occurs due to an unchecked input data from a crafted BMP file, leading to an out-of-bounds read.
Which software is affected by CVE-2021-44423?
Open Design Alliance (ODA) Drawings Explorer before version 2022.12 is affected by CVE-2021-44423.
How can I fix CVE-2021-44423?
To fix CVE-2021-44423, it is recommended to update Open Design Alliance (ODA) Drawings Explorer to version 2022.12 or later.