Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In May 2021
A null pointer deference issue exists in GNU LibreDWG 0.10 via get_bmp ../../programs/dwgbmp.c:164.
CVSS Score
6.5
EPSS Score
0.003
Published
2021-05-17
A null pointer deference issue exists in GNU LibreDWG 0.10 via read_2004_compressed_section ../../src/decode.c:2337.
CVSS Score
6.5
EPSS Score
0.003
Published
2021-05-17
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10 via read_2004_section_preview ../../src/decode.c:3175.
CVSS Score
8.8
EPSS Score
0.004
Published
2021-05-17
A heap based buffer overflow vulnerability exits in GNU LibreDWG 0.10 via: read_2004_section_appinfo ../../src/decode.c:2842.
CVSS Score
8.8
EPSS Score
0.005
Published
2021-05-17
An issue was discovered in GNU LibreDWG 0.10. Crafted input will lead to an memory leak in dwg_decode_eed ../../src/decode.c:3638.
CVSS Score
6.5
EPSS Score
0.004
Published
2021-05-17
A heap based buffer overflow vulnerability exits in GNU LibreDWG 0.10 via bit_search_sentinel ../../src/bits.c:1985.
CVSS Score
8.8
EPSS Score
0.005
Published
2021-05-17
A heap based buffer overflow vulnerability exits in GNU LibreDWG 0.10 via bit_read_B ../../src/bits.c:135.
CVSS Score
8.8
EPSS Score
0.005
Published
2021-05-17
A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10 via read_2004_compressed_section ../../src/decode.c:2379.
CVSS Score
7.8
EPSS Score
0.003
Published
2021-05-17
Matrix-React-SDK is a react-based SDK for inserting a Matrix chat/voip client into a web page. Before version 3.21.0, when uploading a file, the local file preview can lead to execution of scripts embedded in the uploaded file. This can only occur after several user interactions to open the preview in a separate tab. This only impacts the local user while in the process of uploading. It cannot be exploited remotely or by other users. This vulnerability is patched in version 3.21.0.
CVSS Score
4.2
EPSS Score
0.002
Published
2021-05-17
A heap based buffer overflow issue exists in GNU LibreDWG 0.10.2641 via htmlwescape ../../programs/escape.c:97.
CVSS Score
8.8
EPSS Score
0.004
Published
2021-05-17


Contact Us

Shodan ® - All rights reserved