Out-of-bounds Write vulnerability was discovered in Open Design Alliance Drawings SDK before 2025.10. Reading crafted DWF file and missing proper checks on received SectionIterator data can trigger an unhandled exception. This can allow attackers to cause a crash, potentially enabling a denial-of-service attack (Crash, Exit, or Restart) or possible code execution.
CVSS
No CVSS.
References
Link | Resource |
---|---|
https://www.opendesign.com/security-advisories |
Configurations
No configuration.
History
04 Dec 2024, 12:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-12-04 12:15
Updated : 2024-12-04 12:15
NVD link : CVE-2024-8894
Mitre link : CVE-2024-8894
CVE.ORG link : CVE-2024-8894
JSON object : View
Products Affected
No product.
CWE
CWE-787
Out-of-bounds Write