GNU LibreDWG是美国GNU社区的一个用于处理DWG文件的C语言库。 GNU LibreDWG 0.13.4.8160及之前版本存在安全漏洞,该漏洞源于Dwgbmp Utility组件bits.c文件中bit_read_RC函数存在堆缓冲区溢出,可能导致远程攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-9530 | 3.3 LOW | GNU LibreDWG Dwgbmp Utility decode.c read_2004_compressed_section out-of-bounds |
| CVE-2026-9529 | 3.3 LOW | GNU LibreDWG Dwggrep Utility dwggrep.c match_BLOCK_HEADER null pointer dereference |
No comments yet