Search CVE reports
1 – 8 of 8 results
CVE-2023-30259
Medium priorityA Buffer Overflow vulnerability in importshp plugin in LibreCAD 2.2.0 allows attackers to obtain sensitive information via a crafted DBF file.
1 affected packages
librecad
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
librecad | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
CVE-2021-45343
Low prioritySome fixes available 5 of 10
In LibreCAD 2.2.0, a NULL pointer dereference in the HATCH handling of libdxfrw allows an attacker to crash the application using a crafted DXF document.
1 affected packages
librecad
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
librecad | Needs evaluation | Fixed | Fixed | Fixed | Fixed |
CVE-2021-45342
Low prioritySome fixes available 5 of 10
A buffer overflow vulnerability in CDataList of the jwwlib component of LibreCAD 2.2.0-rc3 and older allows an attacker to achieve Remote Code Execution using a crafted JWW document.
1 affected packages
librecad
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
librecad | Needs evaluation | Fixed | Fixed | Fixed | Fixed |
CVE-2021-45341
Low prioritySome fixes available 5 of 10
A buffer overflow vulnerability in CDataMoji of the jwwlib component of LibreCAD 2.2.0-rc3 and older allows an attacker to achieve Remote Code Execution using a crafted JWW document.
1 affected packages
librecad
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
librecad | Needs evaluation | Fixed | Fixed | Fixed | Fixed |
CVE-2021-21898
Medium prioritySome fixes available 5 of 11
A code execution vulnerability exists in the dwgCompressor::decompress18() functionality of LibreCad libdxfrw 2.2.0-rc2-19-ge02f3580. A specially-crafted .dwg file can lead to an out-of-bounds write. An attacker can provide a...
1 affected packages
librecad
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
librecad | Needs evaluation | Fixed | Fixed | Fixed | Fixed |
CVE-2021-21900
Medium prioritySome fixes available 5 of 11
A code execution vulnerability exists in the dxfRW::processLType() functionality of LibreCad libdxfrw 2.2.0-rc2-19-ge02f3580. A specially-crafted .dxf file can lead to a use-after-free vulnerability. An attacker can provide a...
1 affected packages
librecad
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
librecad | Needs evaluation | Fixed | Fixed | Fixed | Fixed |
CVE-2021-21899
Medium prioritySome fixes available 4 of 10
A code execution vulnerability exists in the dwgCompressor::copyCompBytes21 functionality of LibreCad libdxfrw 2.2.0-rc2-19-ge02f3580. A specially-crafted .dwg file can lead to a heap buffer overflow. An attacker can provide a...
1 affected packages
librecad
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
librecad | Needs evaluation | Fixed | Fixed | Fixed | Fixed |
CVE-2018-19105
Medium prioritySome fixes available 2 of 4
LibreCAD 2.1.3 allows remote attackers to cause a denial of service (0x89C04589 write access violation and application crash) or possibly have unspecified other impact via a crafted file.
1 affected packages
librecad
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
librecad | — | Not affected | Not affected | Fixed | Fixed |