CVE-2018-18224: Opendesign Drawings SDK
High severity, CVSS 8.1. EPSS: 2.2% chance of exploitation in the next 30 days.
A vulnerability exists in the file reading procedure in Open Design Alliance Drawings SDK 2019Update1 on non-Windows platforms in which attackers could perform read operations past the end, or before the beginning, of the intended buffer. This can allow attackers to obtain sensitive information from process memory or cause a crash.
Affected products
- Opendesign Drawings SDK: version 2019 only
- Oracle Outside In Technology: version 8.5.3 only; version 8.5.4 only
Published 2018-10-19. Last modified 2026-06-17.