libdxfrw 0.6.3 has an Integer Overflow in dwgCompressor::decompress18 in dwgutil.cpp, leading to an out-of-bounds read and application crash.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
http://hac425.unaux.com/index.php/archives/59/ | third party advisory not applicable |
https://github.com/codelibs/libdxfrw/issues/2 | issue tracking third party advisory |