High severity8.8NVD Advisory· Published Jan 25, 2022· Updated Jun 17, 2026
CVE-2021-45341
CVE-2021-45341
Description
A buffer overflow vulnerability in CDataMoji of the jwwlib component of LibreCAD 2.2.0-rc3 and older allows an attacker to achieve Remote Code Execution using a crafted JWW document.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
17cpe:2.3:a:librecad:librecad:*:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:librecad:librecad:*:*:*:*:*:*:*:*range: <2.2.0
- cpe:2.3:a:librecad:librecad:2.2.0:rc1:*:*:*:*:*:*
- cpe:2.3:a:librecad:librecad:2.2.0:rc2:*:*:*:*:*:*
- cpe:2.3:a:librecad:librecad:2.2.0:rc3:*:*:*:*:*:*
- (no CPE)range: <=2.2.0-rc3
cpe:2.3:o:fedoraproject:fedora:34:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:fedoraproject:fedora:34:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
- LibreCAD/jwwlibdescription
- osv-coords7 versionspkg:rpm/opensuse/libdxfrw&distro=openSUSE%20Leap%2015.4pkg:rpm/opensuse/librecad&distro=openSUSE%20Leap%2015.3pkg:rpm/opensuse/librecad&distro=openSUSE%20Leap%2015.4pkg:rpm/opensuse/librecad&distro=openSUSE%20Tumbleweedpkg:rpm/suse/libdxfrw&distro=SUSE%20Package%20Hub%2015%20SP4pkg:rpm/suse/librecad&distro=SUSE%20Package%20Hub%2015%20SP3pkg:rpm/suse/librecad&distro=SUSE%20Package%20Hub%2015%20SP4
< 1.0.1+git.20220109-bp154.2.3.1+ 6 more
- (no CPE)range: < 1.0.1+git.20220109-bp154.2.3.1
- (no CPE)range: < 2.2.0~rc3-bp153.2.9.1
- (no CPE)range: < 2.2.0~rc3-bp154.3.3.1
- (no CPE)range: < 2.2.0~rc3-7.1
- (no CPE)range: < 1.0.1+git.20220109-bp154.2.3.1
- (no CPE)range: < 2.2.0~rc3-bp153.2.9.1
- (no CPE)range: < 2.2.0~rc3-bp154.3.3.1
Patches
Vulnerability mechanics
References
5- github.com/LibreCAD/LibreCAD/issues/1462nvdExploitIssue TrackingThird Party Advisory
- www.debian.org/security/2022/dsa-5077nvdThird Party Advisory
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FCC2FZ6HZOIK3775K4MTCOUHX6PLGPEL/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VUMH3CWGVSMR2UIZEA35Q5UB7PDVVVYS/nvd
- security.gentoo.org/glsa/202305-26nvd
News mentions
0No linked articles in our index yet.