PT-2022-27471 · Libredwg · Libredwg

Iorra-Cifer

·

Published

2022-11-30

·

Updated

2025-04-24

·

CVE-2022-45332

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions LibreDWG version 0.12.4.4643
Description A heap buffer overflow issue was discovered in the decode preR13 section hdr function at decode r11.c. This issue affects the specified version of LibreDWG.
Recommendations For LibreDWG version 0.12.4.4643, consider disabling the decode preR13 section hdr function as a temporary workaround until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2022-45332

Affected Products

Libredwg