CVE-2022-33032: High severity gnu libredwg vulnerability
Published Jun 22, 2022
·Updated
LibreDWG v0.12.4.4608 was discovered to contain a heap-buffer-overflow via the function decodepreR13sectionhdr at decoder11.c.
Affected Software
1 affected component
GNU LibreDWG
Event History
Jun 22, 2022
CVE Published
via MITRE·01:33 PM
Data Sourced
via MITRE·01:33 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-33032?
The severity of CVE-2022-33032 is high (severity value: 7.8).
2
What software is affected by CVE-2022-33032?
GNU LibreDWG version 0.12.4.4608 is affected by CVE-2022-33032.
3
What is the vulnerability description of CVE-2022-33032?
CVE-2022-33032 is a heap buffer overflow vulnerability discovered in LibreDWG v0.12.4.4608, specifically in the function decode_preR13_section_hdr at decode_r11.c.
4
Is there a fix available for CVE-2022-33032?
Currently, there is no known fix available for CVE-2022-33032. It is recommended to follow the recommendations provided by the software vendor or project team.
5
Where can I find more information about CVE-2022-33032?
There is more information available about CVE-2022-33032 on the official GitHub issue page: [link](https://github.com/LibreDWG/libredwg/issues/488).