An issue was discovered in Open Design Alliance Drawings SDK before 2024.1. A crafted DWG file can force the SDK to reuse an object that has been freed. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.opendesign.com/security-advisories |
|
History
Tue, 11 Feb 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published: 2023-04-10T00:00:00.000Z
Updated: 2025-02-11T16:17:49.120Z
Reserved: 2023-02-23T00:00:00.000Z
Link: CVE-2023-26495
Updated: 2024-08-02T11:53:53.975Z
Status : Modified
Published: 2023-04-10T20:15:10.770
Modified: 2025-02-11T17:15:19.193
Link: CVE-2023-26495
No data.