PT-2022-12328 · Libdxfrw+4 · Libdxfrw+4
Eldstal
·
Published
2022-01-25
·
Updated
2025-02-03
·
CVE-2021-45343
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
LibreCAD version 2.2.0
Description
A NULL pointer dereference in the HATCH handling of libdxfrw allows an attacker to crash the application using a crafted DXF document.
Recommendations
For LibreCAD version 2.2.0, consider updating to a newer version that addresses this issue, as no specific fix is provided for this version. As a temporary workaround, avoid using crafted DXF documents that could trigger the NULL pointer dereference in the HATCH handling of libdxfrw.
Exploit
Fix
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Librecad
Linuxmint
Ubuntu
Libdxfrw