High severity8.1NVD Advisory· Published Jan 8, 2020· Updated Jun 17, 2026
CVE-2020-6614
CVE-2020-6614
Description
GNU LibreDWG 0.9.3.2564 has a heap-based buffer over-read in bfr_read in decode.c.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- cpe:2.3:a:opensuse:backports_sle:15.0:sp1:*:*:*:*:*:*
- GNU/GNU LibreDWGdescription
- osv-coords2 versionspkg:rpm/opensuse/libredwg&distro=openSUSE%20Leap%2015.1pkg:rpm/suse/libredwg&distro=SUSE%20Package%20Hub%2015%20SP1
< 0.10-lp151.2.6.1+ 1 more
- (no CPE)range: < 0.10-lp151.2.6.1
- (no CPE)range: < 0.10-bp151.2.6.1
Patches
Vulnerability mechanics
References
3- github.com/LibreDWG/libredwg/issues/179nvdExploitThird Party Advisory
- lists.opensuse.org/opensuse-security-announce/2020-01/msg00046.htmlnvdMailing ListThird Party Advisory
- lists.opensuse.org/opensuse-security-announce/2020-01/msg00052.htmlnvdMailing ListThird Party Advisory
News mentions
0No linked articles in our index yet.