Bug 1271169 (CVE-2026-15182) - VUL-0: CVE-2026-15182: libredwg: Fix dwg_bmp thumbnail overflow checks
Summary: VUL-0: CVE-2026-15182: libredwg: Fix dwg_bmp thumbnail overflow checks
Status: IN_PROGRESS
Alias: CVE-2026-15182
Product: openSUSE Distribution
Classification: openSUSE
Component: Security (show other bugs)
Version: Leap 16.1
Hardware: Other Other
: P3 - Medium : Normal (vote)
Target Milestone: ---
Assignee: Security Team bot
QA Contact: Security Team bot
URL: https://smash.suse.de/issue/532946/
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2026-07-09 14:22 UTC by SMASH SMASH
Modified: 2026-07-15 08:12 UTC (History)
1 user (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description SMASH SMASH 2026-07-09 14:22:09 UTC
A vulnerability has been found in GNU LibreDWG up to 0.13.4. The affected element is the function dwg_bmp of the file src/dwg.c of the component BMP Image Handler. Such manipulation leads to heap-based buffer overflow. The attack must be carried out locally. The exploit has been disclosed to the public and may be used. Upgrading to version 0.14 is sufficient to fix this issue. The name of the patch is 18fd542bb4d5ccedf9de12052bf50068b2b26f06. It is suggested to upgrade the affected component.

References:
https://www.gnu.org/
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2026-15182
https://www.cve.org/CVERecord?id=CVE-2026-15182
https://github.com/HackC0der/CVE-Repos/blob/main/libredwg/libredwg_0b57303_heap_overflow_decode_R13_R2000.dwg
https://github.com/LibreDWG/libredwg/commit/18fd542bb4d5ccedf9de12052bf50068b2b26f06
https://github.com/LibreDWG/libredwg/issues/1249
https://github.com/LibreDWG/libredwg/issues/1252
https://github.com/LibreDWG/libredwg/releases/tag/0.14
https://vuldb.com/cve/CVE-2026-15182
https://vuldb.com/submit/851191
https://vuldb.com/vuln/377109
https://vuldb.com/vuln/377109/cti
Comment 1 Alexander Bergmann 2026-07-09 14:25:17 UTC
Affected code-streams:

openSUSE:Backports:SLE-15-SP7:Update   libredwg          
openSUSE:Backports:SLE-16.0            libredwg          
openSUSE:Factory                       libredwg   0.13.3
Comment 2 OBSbugzilla Bot 2026-07-10 20:35:04 UTC
This is an autogenerated message for OBS integration:
This bug (1271169) was mentioned in
https://src.opensuse.org/pool/libredwg/pulls/1 leap-16.0 / libredwg
Comment 3 Marcus Meissner 2026-07-15 07:52:33 UTC
openSUSE-Leap-16.0-packagehub-410: An update that solves 9 vulnerabilities and has 9 bug fixes is now available.


Category: security (important)
Bug References: 1266287,1266321,1266365,1266377,1266378,1266379,1266380,1271169,1271170,CVE-2026-15181,CVE-2026-15184,CVE-2026-9501,CVE-2026-9502,CVE-2026-9503,CVE-2026-9504,CVE-2026-9529,CVE-2026-9530,CVE-2026-9605
CVE References: CVE-2026-15181,CVE-2026-15184,CVE-2026-9501,CVE-2026-9502,CVE-2026-9503,CVE-2026-9504,CVE-2026-9529,CVE-2026-9530,CVE-2026-9605
JIRA References: 
Sources used:
libredwg-0.14.8413-bp160.1.1