Opendesign
Opendesign Drawings Software Development KIT: vulnerabilidades y CVE
Opendesign Drawings Software Development KIT tiene 13 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE13
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2022-23095 | Alta (7.8) | 1.1% | — | 15 ene 2022 | Open Design Alliance Drawings SDK before 2022.12.1 mishandles the loading of JPG files. Unchecked input data from a crafted JPG file leads to memory corruption. An attacker can leverage this vulnerability to execute… |
| CVE-2021-43391 | Alta (7.8) | 1.7% | — | 14 nov 2021 | An Out-of-Bounds Read vulnerability exists when reading a DXF file using Open Design Alliance Drawings SDK before 2022.11. The specific issue exists within the parsing of DXF files. Crafted data in a DXF file (an… |
| CVE-2021-43390 | Alta (7.8) | 1.7% | — | 14 nov 2021 | An Out-of-Bounds Write vulnerability exists when reading a DGN file using Open Design Alliance Drawings SDK before 2022.11. The specific issue exists within the parsing of DGN files. Crafted data in a DGN file and lack… |
| CVE-2021-43336 | Alta (7.8) | 1.7% | — | 14 nov 2021 | An Out-of-Bounds Write vulnerability exists when reading a DXF or DWG file using Open Design Alliance Drawings SDK before 2022.11. The specific issue exists within the parsing of DXF and DWG files. Crafted data in a DXF… |
| CVE-2021-43280 | Alta (7.8) | 1.9% | — | 14 nov 2021 | A stack-based buffer overflow vulnerability exists in the DWF file reading procedure in Open Design Alliance Drawings SDK before 2022.8. The issue results from the lack of proper validation of the length of… |
| CVE-2021-43275 | Alta (7.8) | 0.88% | — | 14 nov 2021 | A Use After Free vulnerability exists in the DGN file reading procedure in Open Design Alliance Drawings SDK before 2022.8. The issue results from the lack of validating the existence of an object prior to performing… |
| CVE-2021-43274 | Alta (7.8) | 0.88% | — | 14 nov 2021 | A Use After Free Vulnerability exists in the Open Design Alliance Drawings SDK before 2022.11. The specific flaw exists within the parsing of DWF files. The issue results from the lack of validating the existence of an… |
| CVE-2021-25178 | Alta (7.8) | 3.2% | — | 18 ene 2021 | An issue was discovered in Open Design Alliance Drawings SDK before 2021.11. A stack-based buffer overflow vulnerability exists when the recover operation is run with malformed .DXF and .DWG files. This can allow… |
| CVE-2021-25177 | Alta (7.8) | 2.3% | — | 18 ene 2021 | An issue was discovered in Open Design Alliance Drawings SDK before 2021.11. A Type Confusion issue exists when rendering malformed .DXF and .DWG files. This can allow attackers to cause a crash, potentially enabling a… |
| CVE-2021-25176 | Alta (7.8) | 2.3% | — | 18 ene 2021 | An issue was discovered in Open Design Alliance Drawings SDK before 2021.11. A NULL pointer dereference exists when rendering malformed .DXF and .DWG files. This can allow attackers to cause a crash, potentially… |
| CVE-2021-25175 | Alta (7.8) | 2.6% | — | 18 ene 2021 | An issue was discovered in Open Design Alliance Drawings SDK before 2021.11. A Type Conversion issue exists when rendering malformed .DXF and .DWG files. This can allow attackers to cause a crash, potentially enabling a… |
| CVE-2021-25174 | Alta (7.8) | 2.2% | — | 18 ene 2021 | An issue was discovered in Open Design Alliance Drawings SDK before 2021.12. A memory corruption vulnerability exists when reading malformed DGN files. It can allow attackers to cause a crash, potentially enabling… |
| CVE-2021-25173 | Alta (7.8) | 2.3% | — | 18 ene 2021 | An issue was discovered in Open Design Alliance Drawings SDK before 2021.12. A memory allocation with excessive size vulnerability exists when reading malformed DGN files, which allows attackers to cause a crash,… |