An issue was discovered in GNU LibreDWG through 0.9.3. Crafted input will lead to a heap-based buffer over-read in dwgencodeentity in commonentitydata.spec.
"2026-04-11T14:11:14Z"
[
{
"id": "CVE-2019-20913-4d86c6ce",
"target": {
"file": "src/dec_macros.h"
},
"deprecated": false,
"digest": {
"line_hashes": [
"213830826583996689317402313247636871493",
"298180385519731208510418832512441301787",
"7303241884940340386907104689857094217",
"320578161566026926538531320737336809925",
"244310063297749902037832346621059482668"
],
"threshold": 0.9
},
"signature_type": "Line",
"source": "https://github.com/libredwg/libredwg/commit/3f503dd294efc63a59608d8a16058c41d44ba13a",
"signature_version": "v1"
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-20913.json"