CVE-2022-33026: Buffer Overflow
Published Jun 22, 2022
·Updated
LibreDWG v0.12.4.4608 was discovered to contain a heap buffer overflow via the function bitcalcCRC at bits.c.
Affected Software
1 affected component
GNU LibreDWG
Event History
Jun 22, 2022
CVE Published
via MITRE·01:33 PM
Data Sourced
via MITRE·01:33 PM
Description
Frequently Asked Questions
1
What is CVE-2022-33026?
CVE-2022-33026 is a vulnerability in LibreDWG v0.12.4.4608 that allows a heap buffer overflow via the function bit_calc_CRC at bits.c.
2
How severe is CVE-2022-33026?
CVE-2022-33026 has a severity rating of 7.8 (high).
3
What software is affected by CVE-2022-33026?
GNU LibreDWG is affected by CVE-2022-33026.
4
What is the Common Weakness Enumeration (CWE) ID for CVE-2022-33026?
CVE-2022-33026 is associated with CWE-119 and CWE-787.
5
Is there a reference for CVE-2022-33026?
Yes, you can find more information about CVE-2022-33026 at https://github.com/LibreDWG/libredwg/issues/484.