216.73.217.24

CVE-2026-9529

· Published 26/05/2026 05:16 · Modified 26/05/2026 19:54

Labels: CVE-2026-9529 2026-05-26CVE-2026-9529CWE-404[email protected]

Essential information

Published
26/05/2026 05:16
Modified
26/05/2026 19:54
Author
Creator
CVSS
1.9 LOW (v3) 1.9 LOW (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A security flaw has been discovered in GNU LibreDWG up to 0.14. The affected element is the function match_BLOCK_HEADER of the file dwggrep.c of the component Dwggrep Utility. Performing a manipulation results in null pointer dereference. The attack requires a local approach. The exploit has been released to the public and may be used for attacks.

NVD status

Status
Deferred — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
gnu / libredwg cpe:2.3:a:gnu:libredwg:0.14:*:*:*:*:*:*:*
gnu / libredwg cpe:2.3:a:gnu:libredwg:<0.14:*:*:*:*:*:*:*

References