Show filters
87 Total Results
Displaying 61-70 of 87
Sort by:
Attacker Value
Unknown

CVE-2020-6612

Disclosure Date: January 08, 2020 (last updated February 21, 2025)
GNU LibreDWG 0.9.3.2564 has a heap-based buffer over-read in copy_compressed_bytes in decode_r2007.c.
Attacker Value
Unknown

CVE-2020-6609

Disclosure Date: January 08, 2020 (last updated February 21, 2025)
GNU LibreDWG 0.9.3.2564 has a heap-based buffer over-read in read_pages_map in decode_r2007.c.
Attacker Value
Unknown

CVE-2020-6613

Disclosure Date: January 08, 2020 (last updated February 21, 2025)
GNU LibreDWG 0.9.3.2564 has a heap-based buffer over-read in bit_search_sentinel in bits.c.
Attacker Value
Unknown

CVE-2020-6611

Disclosure Date: January 08, 2020 (last updated February 21, 2025)
GNU LibreDWG 0.9.3.2564 has a NULL pointer dereference in get_next_owned_entity in dwg.c.
Attacker Value
Unknown

CVE-2020-6610

Disclosure Date: January 08, 2020 (last updated February 21, 2025)
GNU LibreDWG 0.9.3.2564 has an attempted excessive memory allocation in read_sections_map in decode_r2007.c.
Attacker Value
Unknown

CVE-2020-6614

Disclosure Date: January 08, 2020 (last updated February 21, 2025)
GNU LibreDWG 0.9.3.2564 has a heap-based buffer over-read in bfr_read in decode.c.
Attacker Value
Unknown

CVE-2020-6615

Disclosure Date: January 08, 2020 (last updated February 21, 2025)
GNU LibreDWG 0.9.3.2564 has an invalid pointer dereference in dwg_dynapi_entity_value in dynapi.c (dynapi.c is generated by gen-dynapi.pl).
Attacker Value
Unknown

CVE-2019-20015

Disclosure Date: December 27, 2019 (last updated November 27, 2024)
An issue was discovered in GNU LibreDWG 0.92. Crafted input will lead to an attempted excessive memory allocation in dwg_decode_LWPOLYLINE_private in dwg.spec.
Attacker Value
Unknown

CVE-2019-20012

Disclosure Date: December 27, 2019 (last updated November 27, 2024)
An issue was discovered in GNU LibreDWG 0.92. Crafted input will lead to an attempted excessive memory allocation in dwg_decode_HATCH_private in dwg.spec.
Attacker Value
Unknown

CVE-2019-20009

Disclosure Date: December 27, 2019 (last updated November 27, 2024)
An issue was discovered in GNU LibreDWG before 0.93. Crafted input will lead to an attempted excessive memory allocation in dwg_decode_SPLINE_private in dwg.spec.