CVE-2020-6613
published 2020-01-08CVE-2020-6613: GNU LibreDWG 0.9.3.2564 has a heap-based buffer over-read in bit_search_sentinel in bits.c.
high8.1CVSS 3.1
AVNACLPRNUIRSUCHINAH
GNU LibreDWG 0.9.3.2564 has a heap-based buffer over-read in bit_search_sentinel in bits.c.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| gnu | libredwg | — | — |
| opensuse | backports_sle | — | — |
| opensuse | leap | — | — |