📦 Drawings Sdk

by Opendesign

🔍 What is Drawings Sdk?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-5180

HIGH CVSS 7.8 Dec 26, 2023

This vulnerability allows remote code execution through a specially crafted DGN file. Attackers can exploit an out-of-bounds write in Open Design Alliance Drawings SDK to execute arbitrary code with t...

CVE-2023-22669

HIGH CVSS 7.8 Apr 15, 2023

This is a heap-based buffer overflow vulnerability in Open Design Alliance Drawings SDK that allows remote code execution when processing malicious DWG files. Attackers can exploit this by crafting sp...

CVE-2022-28807

HIGH CVSS 7.8 Jul 17, 2022

An out-of-bounds read vulnerability in Open Design Alliance Drawings SDK allows attackers to execute arbitrary code when processing malicious DWG files in recovery mode. This affects applications usin...

CVE-2022-28809

HIGH CVSS 7.8 Jul 17, 2022

This vulnerability allows an attacker to execute arbitrary code by tricking a user or system into opening a specially crafted DWG file. It affects applications using Open Design Alliance Drawings SDK ...

CVE-2021-44859

HIGH CVSS 7.8 Dec 21, 2021

An out-of-bounds read vulnerability in Open Design Alliance Drawings SDK allows attackers to execute arbitrary code by providing a malicious TGA file. This affects applications using the SDK to proces...

CVE-2021-44422

HIGH CVSS 7.8 Dec 21, 2021

CVE-2021-44422 is a heap-based buffer overflow vulnerability in Open Design Alliance Drawings SDK that allows remote code execution when processing malicious BMP files. Attackers can exploit this by t...

CVE-2021-44045

HIGH CVSS 7.8 Dec 5, 2021

This vulnerability allows remote code execution through specially crafted DGN files in Open Design Alliance Drawings SDK. Attackers can exploit an out-of-bounds write vulnerability to execute arbitrar...

CVE-2021-44047

HIGH CVSS 7.8 Dec 5, 2021

A use-after-free vulnerability in Open Design Alliance Drawings SDK allows remote code execution when processing malicious DWF/DWFX files. Attackers can exploit this to execute arbitrary code with the...

CVE-2021-43582

HIGH CVSS 7.8 Nov 22, 2021

CVE-2021-43582 is a use-after-free vulnerability in Open Design Alliance Drawings SDK that allows remote code execution when processing malicious DWG files. Attackers can exploit this by tricking user...

CVE-2021-32944

HIGH CVSS 7.8 Jun 17, 2021

This vulnerability allows attackers to execute arbitrary code or cause denial-of-service by exploiting a use-after-free memory corruption flaw in Siemens Drawings SDK when processing malicious DGN fil...

CVE-2021-32950

HIGH CVSS 7.1 Jun 17, 2021

This vulnerability allows attackers to cause denial-of-service or read sensitive memory information by exploiting an out-of-bounds read issue in the Drawings SDK when parsing malicious DXF files. It a...

CVE-2021-32938

HIGH CVSS 7.1 Jun 17, 2021

This vulnerability in Drawings SDK allows attackers to read sensitive information from memory or cause denial-of-service by exploiting improper validation of DWG file data. All versions prior to 2022....