An issue was discovered in Open Design Alliance Drawings SDK before 2024.1. A crafted DWG file can force the SDK to reuse an object that has been freed. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.opendesign.com/security-advisories |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2023-04-10T00:00:00
Updated: 2024-08-02T11:53:53.975Z
Reserved: 2023-02-23T00:00:00
Link: CVE-2023-26495
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-04-10T20:15:10.770
Modified: 2024-11-21T07:51:38.213
Link: CVE-2023-26495
Redhat
No data.