Versions of the package libredwg before 0.12.5.6384 are vulnerable to Denial of Service (DoS) due to an out-of-bounds read involving section->numpages in decoder2007.c.
LibreDWG v0.11 to v0.12.5 was discovered to contain a heap buffer overflow via the function bitwriteTF at bits.c.
LibreDWG v0.12.5 was discovered to contain a heap buffer overflow via the function bitcalcCRC at bits.c.
LibreDWG v0.10 to v0.12.5 was discovered to contain a heap buffer overflow via the function bitutf8toTU at bits.c.
LibreDWG v0.10 to v0.12.5 was discovered to contain a heap buffer overflow via the function bitwcs2nlen at bits.c.
A heap-based buffer overflow vulnerability exits in GNU LibreDWG v0.12.5 via the bitreadRC function at bits.c.
LibreDWG v0.12.4.4643 was discovered to contain a heap buffer overflow via the function decodepreR13sectionhdr at decoder11.c.
LibreDWG v0.12.4.4608 was discovered to contain a stack overflow via the function copybytes at decoder2007.c.
LibreDWG v0.12.4.4608 was discovered to contain a double-free via the function dwgreadfile at dwg.c.
LibreDWG v0.12.4.4608 was discovered to contain a heap-buffer-overflow via the function decodepreR13sectionhdr at decoder11.c.
LibreDWG v0.12.4.4608 was discovered to contain a heap-use-after-free via the function decodepreR13section at decoder11.c.
LibreDWG v0.12.4.4608 was discovered to contain a heap buffer overflow via the function dwgaddobject at decode.c.
LibreDWG v0.12.4.4608 was discovered to contain a heap-use-after-free via the function dwgaddhandleref at dwg.c.
LibreDWG v0.12.4.4608 was discovered to contain a heap buffer overflow via the function bitcalcCRC at bits.c.
There is an Assertion int decodepreR13entities(BITCODERL, BITCODERL, unsigned int, BITCODERL, BITCODERL, BitChain , DwgData ' failed at dwg2dxf: decode.c:5801 in libredwg v0.12.4.4608.
A heap buffer overflow was discovered in copybytes in decoder2007.c in dwgread before 0.12.4 via a crafted dwg file.
A heap buffer overflow was discovered in copycompressedbytes in decoder2007.c in dwgread before 0.12.4 via a crafted dwg file.
LibreDWG v0.12.3 was discovered to contain a NULL pointer dereference via outdxfb.c.
An issue was discovered in libredwg through v0.10.1.3751. bitreadfixed() in bits.c has a heap-based buffer overflow.
An issue was discovered in libredwg through v0.10.1.3751. appinfoprivate() in decode.c has a heap-based buffer overflow.
An issue was discovered in libredwg through v0.10.1.3751. dwgfreeMATERIALprivate() in dwg.spec has a double free.
An issue was discovered in libredwg through v0.10.1.3751. bitwcs2nlen() in bits.c has a heap-based buffer overflow.
An issue was discovered in libredwg through v0.10.1.3751. bitwcs2len() in bits.c has a heap-based buffer overflow.
GNU LibreDWG 0.12.3.4163 through 0.12.3.4191 has a double-free in bitchainfree (called from dwgencodeMTEXT and dwgencodeaddobject).
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10 via read2004sectionhandles ../../src/decode.c:2637.
GNU LibreDWG 0.10 is affected by: memcpy-param-overlap. The impact is: execute arbitrary code (remote). The component is: read2004sectionheader ../../src/decode.c:2580.
A heap based buffer overflow vulnerability exits in GNU LibreDWG 0.10 via bitreadRC ../../src/bits.c:318.
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10 via read2004sectionrevhistory ../../src/decode.c:3051.
A heap based buffer overflow vulnerability exits in GNU LibreDWG 0.10 via bitreadB ../../src/bits.c:135.
A heap based buffer overflow vulnerability exits in GNU LibreDWG 0.10 via bitsearchsentinel ../../src/bits.c:1985.