Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q6j5-wxg6-4vrv

Опубликовано: 26 мая 2026
Источник: github
Github: Не прошло ревью
CVSS4: 1.9
CVSS3: 3.3

Описание

A security flaw has been discovered in GNU LibreDWG up to 0.14. This impacts the function dwg_next_entity of the file src/decode.c of the component DWG File Handler. The manipulation results in null pointer dereference. The attack must be initiated from a local position. The exploit has been released to the public and may be used for attacks. The patch is identified as 8f03865f37f5d4ffd616fef802acc980be54d300. Upgrading the affected component is advised.

A security flaw has been discovered in GNU LibreDWG up to 0.14. This impacts the function dwg_next_entity of the file src/decode.c of the component DWG File Handler. The manipulation results in null pointer dereference. The attack must be initiated from a local position. The exploit has been released to the public and may be used for attacks. The patch is identified as 8f03865f37f5d4ffd616fef802acc980be54d300. Upgrading the affected component is advised.

EPSS

Процентиль: 2%
0.00113
Низкий

1.9 Low

CVSS4

3.3 Low

CVSS3

Дефекты

CWE-404

Связанные уязвимости

CVSS3: 3.3
nvd
2 месяца назад

A security flaw has been discovered in GNU LibreDWG up to 0.14. This impacts the function dwg_next_entity of the file src/decode.c of the component DWG File Handler. The manipulation results in null pointer dereference. The attack must be initiated from a local position. The exploit has been released to the public and may be used for attacks. The patch is identified as 8f03865f37f5d4ffd616fef802acc980be54d300. Upgrading the affected component is advised.

CVSS3: 3.3
debian
2 месяца назад

A security flaw has been discovered in GNU LibreDWG up to 0.14. This i ...

CVSS3: 3.3
fstec
3 месяца назад

Уязвимость функции dwg_next_entity() библиотеки для обработки файлов формата DWG LibreDWG, позволяющая нарушителю вызвать отказ в обслуживании

suse-cvrf
19 дней назад

Security update for libredwg

EPSS

Процентиль: 2%
0.00113
Низкий

1.9 Low

CVSS4

3.3 Low

CVSS3

Дефекты

CWE-404