📦 Drawings Software Development Kit

by Opendesign

🔍 What is Drawings Software Development Kit?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-23095

HIGH CVSS 7.8 Jan 15, 2022

CVE-2022-23095 is a memory corruption vulnerability in Open Design Alliance Drawings SDK that allows remote code execution when processing malicious JPG files. Attackers can exploit this to execute ar...

CVE-2021-43280

HIGH CVSS 7.8 Nov 14, 2021

CVE-2021-43280 is a stack-based buffer overflow vulnerability in Open Design Alliance Drawings SDK that allows remote code execution when processing malicious DWF files. Attackers can exploit this to ...

CVE-2021-43390

HIGH CVSS 7.8 Nov 14, 2021

CVE-2021-43390 is an out-of-bounds write vulnerability in Open Design Alliance Drawings SDK that allows remote code execution when processing malicious DGN files. Attackers can exploit this by trickin...

CVE-2021-43274

HIGH CVSS 7.8 Nov 14, 2021

CVE-2021-43274 is a use-after-free vulnerability in the Open Design Alliance Drawings SDK that allows attackers to execute arbitrary code by exploiting improper memory handling when parsing malicious ...

CVE-2021-25173

HIGH CVSS 7.8 Jan 18, 2021

This vulnerability in Open Design Alliance Drawings SDK allows attackers to crash applications by sending specially crafted DGN files that trigger excessive memory allocation. It affects any software ...

CVE-2021-25175

HIGH CVSS 7.8 Jan 18, 2021

A type conversion vulnerability in Open Design Alliance Drawings SDK allows attackers to crash applications by providing malformed .DXF or .DWG files. This enables denial of service attacks against sy...

CVE-2021-25177

HIGH CVSS 7.8 Jan 18, 2021

A type confusion vulnerability in Open Design Alliance Drawings SDK allows attackers to crash applications by providing malformed .DXF or .DWG files. This can lead to denial of service attacks. Affect...