An issue was discovered in GNU LibreDWG through 0.9.3. There is a NULL pointer dereference in the function dwgencodecommonentityhandledata in commonentityhandledata.spec.
LibreDWG v0.12.3 was discovered to contain a heap-buffer overflow via decodepreR13.
LibreDWG v0.12.4.4608 & commit f2dea29 was discovered to contain a heap use-after-free via bitcopychain.
An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is an out-of-bounds read in the function dwgdxfBLOCKCONTROL at dwg.spec.
An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is an out-of-bounds read in the function bitreadB at bits.c.
An issue was discovered in GNU LibreDWG 0.92. There is a heap-based buffer over-read in decodeR13R2000 in decode.c.
An issue was discovered in GNU LibreDWG before 0.93. There is a double-free in dwgfree in free.c.
An issue was discovered in GNU LibreDWG 0.92. There is a use-after-free in resolveobjectrefvector in decode.c.
GNU LibreDWG 0.10 is affected by: memcpy-param-overlap. The impact is: execute arbitrary code (remote). The component is: read2004sectionheader ../../src/decode.c:2580.
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10 via read2004sectionhandles ../../src/decode.c:2637.
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10 via read2004sectionrevhistory ../../src/decode.c:3051.
A heap based buffer overflow vulnerability exits in GNU LibreDWG 0.10 via bitreadRC ../../src/bits.c:318.
An issue was discovered in GNU LibreDWG through 0.9.3. Crafted input will lead to a stack overflow in bits.c, possibly related to bitreadTF.
GNU LibreDWG 0.9.3.2564 has a heap-based buffer over-read in readpagesmap in decoder2007.c.
An issue was discovered in libredwg through v0.10.1.3751. dwgfreeMATERIALprivate() in dwg.spec has a double free.
An issue was discovered in libredwg through v0.10.1.3751. appinfoprivate() in decode.c has a heap-based buffer overflow.
An issue was discovered in libredwg through v0.10.1.3751. bitwcs2len() in bits.c has a heap-based buffer overflow.
An issue was discovered in libredwg through v0.10.1.3751. bitreadfixed() in bits.c has a heap-based buffer overflow.
An issue was discovered in libredwg through v0.10.1.3751. bitwcs2nlen() in bits.c has a heap-based buffer overflow.
GNU LibreDWG 0.12.3.4163 through 0.12.3.4191 has a double-free in bitchainfree (called from dwgencodeMTEXT and dwgencodeaddobject).
A heap based buffer overflow vulnerability exits in GNU LibreDWG 0.10 via: read2004sectionappinfo ../../src/decode.c:2842.
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10 via read2004compressedsection ../../src/decode.c:2417.
A heap based buffer overflow vulneraibility exists in GNU LibreDWG 0.10 via bitcalcCRC ../../src/bits.c:2213.
A heap based buffer overflow vulnerability exits in GNU LibreDWG 0.10 via bitreadB ../../src/bits.c:135.
A heab based buffer overflow issue exists in GNU LibreDWG 0.10.2641 via htmlescape ../../programs/escape.c:46.
A heap based buffer overflow vulnerability exits in GNU LibreDWG 0.10 via: read2004sectionclasses ../../src/decode.c:2440.
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10.2641 via htmlescape ../../programs/escape.c:48.
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10.2641via htmlescape ../../programs/escape.c:51.
A heap based buffer overflow vulnerability exits in GNU LibreDWG 0.10 via bitsearchsentinel ../../src/bits.c:1985.
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10 via read2004sectionpreview ../../src/decode.c:3175.