Vulnerabilities > Opendesign > Drawings Software Development KIT

DATE CVE VULNERABILITY TITLE RISK
2022-01-15 CVE-2022-23095 Out-of-bounds Write vulnerability in Opendesign Drawings Software Development KIT 2021.11/2021.12
Open Design Alliance Drawings SDK before 2022.12.1 mishandles the loading of JPG files.
local
low complexity
opendesign CWE-787
7.8
2021-11-14 CVE-2021-43274 Use After Free vulnerability in Opendesign Drawings Software Development KIT 2021.11/2021.12
A Use After Free Vulnerability exists in the Open Design Alliance Drawings SDK before 2022.11.
6.8
2021-11-14 CVE-2021-43275 Use After Free vulnerability in Opendesign Drawings Software Development KIT 2021.11/2021.12
A Use After Free vulnerability exists in the DGN file reading procedure in Open Design Alliance Drawings SDK before 2022.8.
6.8
2021-11-14 CVE-2021-43280 Out-of-bounds Write vulnerability in Opendesign Drawings Software Development KIT 2021.11/2021.12
A stack-based buffer overflow vulnerability exists in the DWF file reading procedure in Open Design Alliance Drawings SDK before 2022.8.
6.8
2021-11-14 CVE-2021-43336 Out-of-bounds Write vulnerability in multiple products
An Out-of-Bounds Write vulnerability exists when reading a DXF or DWG file using Open Design Alliance Drawings SDK before 2022.11.
local
low complexity
opendesign siemens CWE-787
7.8
2021-11-14 CVE-2021-43390 Out-of-bounds Write vulnerability in Opendesign Drawings Software Development KIT 2021.11/2021.12
An Out-of-Bounds Write vulnerability exists when reading a DGN file using Open Design Alliance Drawings SDK before 2022.11.
6.8
2021-11-14 CVE-2021-43391 Out-of-bounds Read vulnerability in Opendesign Drawings Software Development KIT 2021.11/2021.12
An Out-of-Bounds Read vulnerability exists when reading a DXF file using Open Design Alliance Drawings SDK before 2022.11.
local
low complexity
opendesign CWE-125
7.8
2021-01-18 CVE-2021-25178 Out-of-bounds Write vulnerability in multiple products
An issue was discovered in Open Design Alliance Drawings SDK before 2021.11.
6.8
2021-01-18 CVE-2021-25177 Type Confusion vulnerability in multiple products
An issue was discovered in Open Design Alliance Drawings SDK before 2021.11.
6.8
2021-01-18 CVE-2021-25176 NULL Pointer Dereference vulnerability in multiple products
An issue was discovered in Open Design Alliance Drawings SDK before 2021.11.
6.8