Vulnerabilities > GNU > Libredwg > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-09-20 CVE-2021-39525 Out-of-bounds Write vulnerability in GNU Libredwg
An issue was discovered in libredwg through v0.10.1.3751.
network
gnu CWE-787
6.8
2021-09-20 CVE-2021-39527 Out-of-bounds Write vulnerability in GNU Libredwg
An issue was discovered in libredwg through v0.10.1.3751.
network
gnu CWE-787
6.8
2021-09-20 CVE-2021-39528 Double Free vulnerability in GNU Libredwg
An issue was discovered in libredwg through v0.10.1.3751.
network
gnu CWE-415
6.8
2021-09-20 CVE-2021-39530 Out-of-bounds Write vulnerability in GNU Libredwg
An issue was discovered in libredwg through v0.10.1.3751.
network
gnu CWE-787
6.8
2021-07-01 CVE-2021-36080 Double Free vulnerability in GNU Libredwg
GNU LibreDWG 0.12.3.4163 through 0.12.3.4191 has a double-free in bit_chain_free (called from dwg_encode_MTEXT and dwg_encode_add_object).
network
gnu CWE-415
6.8
2021-05-18 CVE-2020-23861 Out-of-bounds Write vulnerability in GNU Libredwg 0.10.1
A heap-based buffer overflow vulnerability exists in LibreDWG 0.10.1 via the read_system_page function at libredwg-0.10.1/src/decode_r2007.c:666:5, which causes a denial of service by submitting a dwg file.
network
gnu CWE-787
4.3
2021-05-17 CVE-2020-21831 Out-of-bounds Write vulnerability in GNU Libredwg 0.10
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10 via read_2004_section_handles ../../src/decode.c:2637.
network
gnu CWE-787
6.8
2021-05-17 CVE-2020-21842 Out-of-bounds Write vulnerability in GNU Libredwg 0.10
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10 via read_2004_section_revhistory ../../src/decode.c:3051.
network
gnu CWE-787
6.8
2021-05-17 CVE-2020-21843 Out-of-bounds Write vulnerability in GNU Libredwg 0.10
A heap based buffer overflow vulnerability exits in GNU LibreDWG 0.10 via bit_read_RC ../../src/bits.c:318.
network
gnu CWE-787
6.8
2021-05-17 CVE-2020-21844 Unspecified vulnerability in GNU Libredwg 0.10
GNU LibreDWG 0.10 is affected by: memcpy-param-overlap.
network
gnu
6.8