REDHAT-BUG-2520884: Buffer Overflow
Published Aug 21, 2026
·Updated
A flaw was found in Dia's WPG (WordPerfect Graphics) import plugin. When parsing a WPG COLORMAP record, the colormap start index and entry count taken from the file are not validated against the fixed 256-entry palette buffer. A crafted WPG file can cause a heap-based buffer overflow in plug-ins/wpg/wpg-import.c, leading to memory corruption, application crash, and potentially arbitrary code execution if a victim opens the malicious file in Dia. Upstream GitLab issue #580 was closed without a fix.
Affected Software
1 affected component
Dia
Event History
Aug 21, 2026
Data Sourced
via Red Hat·03:53 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
Is an upstream fix available for this issue?
The referenced upstream GitLab issue #580 was closed without a fix. No patched version or vendor remediation is identified in the available data.