PT-2022-27471 · Libredwg · Libredwg
Iorra-Cifer
·
Published
2022-11-30
·
Updated
2025-04-24
·
CVE-2022-45332
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
LibreDWG version 0.12.4.4643
Description
A heap buffer overflow issue was discovered in the
decode preR13 section hdr function at decode r11.c. This issue affects the specified version of LibreDWG.Recommendations
For LibreDWG version 0.12.4.4643, consider disabling the
decode preR13 section hdr function as a temporary workaround until a patch is available.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.Exploit
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Libredwg