Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Seyit Sığırcı

#17121of 53,633
15.6Total CVSS
Vulnerabilities · 2
High
2
PT-2023-31894
7.8
2023-12-26
Open Design Alliance · Open Design Alliance Drawings Sdk · CVE-2023-5180
**Name of the Vulnerable Software and Affected Versions** Open Design Alliance Drawings SDK versions prior to 2024.12 **Description** An issue was discovered in the Open Design Alliance Drawings SDK where a corrupted value of the number of sectors used by the Fat structure in a crafted DGN file leads to an out-of-bounds write. This allows an attacker to execute code in the context of the current process. **Recommendations** For versions prior to 2024.12, update to a version 2024.12 or later to resolve the issue. As a temporary workaround, consider restricting the use of crafted DGN files to minimize the risk of exploitation.
PT-2023-31893
7.8
2023-11-07
Open Design Alliance · Open Design Alliance Drawings Sdk · CVE-2023-5179
**Name of the Vulnerable Software and Affected Versions** Open Design Alliance Drawings SDK versions prior to 2024.10 **Description** An issue in the Open Design Alliance Drawings SDK allows attackers to cause a crash or potentially enable code execution through a denial-of-service attack. This occurs when a corrupted value for the start of a MiniFat sector in a crafted DGN file leads to an out-of-bounds read. **Recommendations** For versions prior to 2024.10, update to version 2024.10 or later to resolve the issue.