CVE-2020-21844: GNU Libredwg

High severity, CVSS 8.8. EPSS: 1.5% chance of exploitation in the next 30 days.

GNU LibreDWG 0.10 is affected by: memcpy-param-overlap. The impact is: execute arbitrary code (remote). The component is: read_2004_section_header ../../src/decode.c:2580.

Affected products

  • GNU Libredwg: version 0.10 only

Published 2021-05-17. Last modified 2026-07-09.