Kicad Eda vulnerabilities

4 known vulnerabilities affecting kicad/kicad_eda.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH4

Vulnerabilities

Page 1 of 1
CVE-2022-23803HIGHCVSS 7.8≥ 0, < 5.1.9+dfsg1-1+deb11u1≥ 0, < 6.0.2+dfsg-12022-02-16
CVE-2022-23803 [HIGH] CVE-2022-23803: A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadXYCoord coordinate parsing functionality of KiCad EDA A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadXYCoord coordinate parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code execution. An attacker can provide a malicious file to trigger th
osv
CVE-2022-23804HIGHCVSS 7.8≥ 0, < 5.1.9+dfsg1-1+deb11u1≥ 0, < 6.0.2+dfsg-12022-02-16
CVE-2022-23804 [HIGH] CVE-2022-23804: A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadIJCoord coordinate parsing functionality of KiCad EDA A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadIJCoord coordinate parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code execution. An attacker can provide a malicious file to trigger th
osv
CVE-2022-23946HIGHCVSS 7.8v6.0.1vKiCad EDA 6.0.1,KiCad EDA master commit de006fc0102022-02-04
CVE-2022-23946 [HIGH] CWE-121 CVE-2022-23946: A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon GCodeNum A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon GCodeNumber parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
nvdosv
CVE-2022-23947HIGHCVSS 7.8v6.0.1vKiCad EDA 6.0.1,KiCad EDA master commit de006fc0102022-02-04
CVE-2022-23947 [HIGH] CWE-121 CVE-2022-23947: A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon DCodeNum A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon DCodeNumber parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
nvdosv