Description
An issue was discovered in Open Design Alliance Drawings SDK before 2024.10. A corrupted value for the start of MiniFat sector in a crafted DGN file leads to an out-of-bounds read. This can allow attackers to cause a crash, potentially enabling a denial-of-service attack (Crash, Exit, or Restart) or possible code execution.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-57516 | An issue was discovered in Open Design Alliance Drawings SDK before 2024.10. A corrupted value for the start of MiniFat sector in a crafted DGN file leads to an out-of-bounds read. This can allow attackers to cause a crash, potentially enabling a denial-of-service attack (Crash, Exit, or Restart) or possible code execution. |
References
| Link | Providers |
|---|---|
| https://www.opendesign.com/security-advisories |
|
History
No history.
Status: PUBLISHED
Assigner: ODA
Published:
Updated: 2024-09-04T19:43:42.670Z
Reserved: 2023-09-25T17:08:14.420Z
Link: CVE-2023-5179
Updated: 2024-08-02T07:52:08.516Z
Status : Modified
Published: 2023-11-07T16:15:29.550
Modified: 2024-11-21T08:41:14.720
Link: CVE-2023-5179
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD