CVE-2022-33033: Double Free
Published Jun 22, 2022
·Updated
LibreDWG v0.12.4.4608 was discovered to contain a double-free via the function dwgreadfile at dwg.c.
Affected Software
1 affected component
GNU LibreDWG=0.12.4.4608
Event History
Jun 22, 2022
CVE Published
via MITRE·01:33 PM
Data Sourced
via MITRE·01:33 PM
Description
Frequently Asked Questions
1
What is CVE-2022-33033?
CVE-2022-33033 is a vulnerability in LibreDWG v0.12.4.4608 that allows an attacker to cause a double-free through the dwg_read_file function in dwg.c.
2
How severe is CVE-2022-33033?
CVE-2022-33033 has a severity score of 7.8, indicating a high severity vulnerability.
3
How can I fix CVE-2022-33033?
To fix CVE-2022-33033, update LibreDWG to a version that includes the necessary security patches.
4
What is the CWE category of CVE-2022-33033?
CVE-2022-33033 belongs to the CWE category 415, which is Double Free.
5
Where can I find more information about CVE-2022-33033?
More information about CVE-2022-33033 can be found at the following reference: [GitHub Issue #493](https://github.com/LibreDWG/libredwg/issues/493).