Vulnerabilities > CVE-2021-44048 - Out-of-bounds Write vulnerability in Opendesign Drawings Explorer

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
opendesign
CWE-787

Summary

An out-of-bounds write vulnerability exists when reading a TIF file using Open Design Alliance (ODA) Drawings Explorer before 2022.11. The specific issue exists after loading TIF files. Crafted data in a TIF file can trigger a write operation past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process.

Vulnerable Configurations

Part Description Count
Application
Opendesign
1

Common Weakness Enumeration (CWE)