Open Design Alliance Drawings SDK before 2022.12.1 mishandles the loading of JPG files. Unchecked input data from a crafted JPG file leads to memory corruption. An attacker can leverage this vulnerability to execute code in the context of the current process.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-28200 | Open Design Alliance Drawings SDK before 2022.12.1 mishandles the loading of JPG files. Unchecked input data from a crafted JPG file leads to memory corruption. An attacker can leverage this vulnerability to execute code in the context of the current process. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.opendesign.com/security-advisories |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-05-05T16:28:04.492Z
Reserved: 2022-01-11T00:00:00.000Z
Link: CVE-2022-23095
No data.
Status : Modified
Published: 2022-01-15T15:17:30.387
Modified: 2025-05-05T17:17:55.063
Link: CVE-2022-23095
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD