Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An out-of-bounds write issue exists in the DXF file-recovering procedure in the Drawings SDK (All versions prior to 2022.4) resulting from the lack of proper validation of user-supplied data. This can result in a write past the end of an allocated buffer and allow attackers to cause a denial-of-service condition or execute code in the context of the current process.
CVSS Information
N/A
Vulnerability Type
跨界内存写
Vulnerability Title
Open Design Alliance Drawings SDK 缓冲区错误漏洞
Vulnerability Description
Open Design Alliance Drawings SDK是美国Open Design Alliance公司的一款应用于图纸设计的软件开发包。该开发包通过方便的,面向对象的API访问.dwg和.dgn中的数据,提供C++API、支持修复文件、.NET,JAVA,Python开发语言的支持等功能。 Drawings SDK 存在缓冲区错误漏洞,该漏洞源于在DXF文件恢复过程中处理不可信输入时出现边界错误。攻击者可利用该漏洞创建一个专门制作的DXF文件,诱骗受害者使用受影响的软件打开它,在目标系统上触
CVSS Information
N/A
Vulnerability Type
N/A