Bug 1102702 - (CVE-2018-14524) VUL-0: CVE-2018-14524: libredwg: dwg_decode_eed in decode.c leads to a double free
(CVE-2018-14524)
VUL-0: CVE-2018-14524: libredwg: dwg_decode_eed in decode.c leads to a double...
Status: RESOLVED FIXED
Classification: openSUSE
Product: openSUSE Tumbleweed
Classification: openSUSE
Component: Security
Current
Other Other
: P3 - Medium : Normal (vote)
: Current
Assigned To: Andreas Stieger
Security Team bot
https://smash.suse.de/issue/211417/
CVSSv2:NVD:CVE-2018-14524:4.3:(AV:N/...
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2018-07-26 07:52 UTC by Johannes Segitz
Modified: 2018-10-02 17:12 UTC (History)
0 users

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments
Reproducer (34.57 KB, application/octet-stream)
2018-07-26 07:52 UTC, Johannes Segitz
Details

Note You need to log in before you can comment on or make changes to this bug.
Description Johannes Segitz 2018-07-26 07:52:07 UTC
Created attachment 778066 [details]
Reproducer

CVE-2018-14524

dwg_decode_eed in decode.c in GNU LibreDWG 0.5.1048 leads to a double free (in
dwg_free_eed in free.c) because it does not properly manage the obj->eed value
after a free occurs.

References:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2018-14524
https://github.com/LibreDWG/libredwg/issues/33
Comment 1 Andreas Stieger 2018-08-09 09:51:48 UTC
submitted to factory
Comment 2 Swamp Workflow Management 2018-08-09 10:30:10 UTC
This is an autogenerated message for OBS integration:
This bug (1102702) was mentioned in
https://build.opensuse.org/request/show/628364 Factory / libredwg