Files
CVEs-PoC/2021/CVE-2021-32944.md
2025-09-29 21:09:30 +02:00

18 lines
892 B
Markdown

### [CVE-2021-32944](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-32944)
![](https://img.shields.io/static/v1?label=Product&message=Drawings%20SDK&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=All%20versions%20prior%20to%202022.4%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=USE%20AFTER%20FREE%20CWE-416&color=brightgreen)
### Description
A use-after-free issue exists in the DGN file-reading procedure in the Drawings SDK (All versions prior to 2022.4) resulting from the lack of proper validation of user-supplied data. This can result in a memory corruption or arbitrary code execution, allowing attackers to cause a denial-of-service condition or execute code in the context of the current process.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/ARPSyndicate/cve-scores