CVE-2021-45950: Medium severity gnu libredwg vulnerability
Published Dec 31, 2021
·Updated
LibreDWG 0.12.4.4313 through 0.12.4.4367 has an out-of-bounds write in dwgfreeBLOCKprivate (called from dwgfreeBLOCK and dwgfreeobject).
Affected Software
1 affected component
GNU LibreDWG>=0.12.4.4313<=0.12.4.4367
Event History
Dec 31, 2021
CVE Published
via MITRE·11:54 PM
Data Sourced
via MITRE·11:54 PM
Description
Jan 1, 2022
Data Sourced
via NVD·12:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this LibreDWG vulnerability?
The vulnerability ID of this LibreDWG vulnerability is CVE-2021-45950.
2
What is the severity of CVE-2021-45950?
The severity of CVE-2021-45950 is medium (6.5).
3
What is the affected software?
The affected software for CVE-2021-45950 is GNU LibreDWG versions 0.12.4.4313 through 0.12.4.4367.
4
What is the CWE ID of this vulnerability?
The CWE ID of this vulnerability is CWE-787.
5
How can I fix CVE-2021-45950?
To fix CVE-2021-45950, it is recommended to update GNU LibreDWG to a version beyond 0.12.4.4367.