Gnu · Libredwg · CVE-2026-9605
**Name of the Vulnerable Software and Affected Versions**
GNU libredwg versions prior to 0.13.4.8161
**Description**
A heap-based buffer overflow occurs in the Dwgbmp Utility component within the `bit read RC()` function of the bits.c file. This flaw allows a remote attacker to trigger the overflow through specific manipulation.
**Recommendations**
Apply patch 8f03865f37f5d4ffd616fef802acc980be54d300 to resolve the issue.