A vulnerbiility was found in Openscad, where a DXF-format drawing with particular (not necessarily malformed!) properties may cause an out-of-bounds memory access when imported using import().
[
{
"signature_version": "v1",
"target": {
"file": "src/dxfdata.cc"
},
"deprecated": false,
"source": "https://github.com/openscad/openscad/commit/770e3234cbfe66edbc0333f796b46d36a74aa652",
"id": "CVE-2022-0496-168e8f09",
"digest": {
"threshold": 0.9,
"line_hashes": [
"104840646302914985118028507586666679707",
"290192162864074042858498841783119365612",
"129351661344461194091528965916417341165",
"202708110383139101075653018937083936016",
"69174987949301901940964503180918080048",
"271101462915753809679981024044093574209",
"36379956317467065235078098124512951203",
"111464875205028175271107682248788448728",
"219379521138952918494047257993133227178",
"331532785697622192092237433826546804796",
"244017198212517058412015092303819341423",
"56081805150064249445818754292008390736",
"337181698592156043535468985986190304910",
"175219831185231836785725466039276036509",
"282901159936443623880124927469027667030",
"69174987949301901940964503180918080048",
"271101462915753809679981024044093574209",
"36379956317467065235078098124512951203",
"111464875205028175271107682248788448728",
"219379521138952918494047257993133227178",
"7016578426519698825768555908807306373",
"121421248718489684711849881019924788079",
"41520838851822563568603610678022585120",
"63866660630917595136451409211490921174",
"175219831185231836785725466039276036509",
"292643001473904189793602732371252989260"
]
},
"signature_type": "Line"
},
{
"signature_version": "v1",
"target": {
"file": "src/dxfdata.cc"
},
"deprecated": false,
"source": "https://github.com/openscad/openscad/commit/00a4692989c4e2f191525f73f24ad8727bacdf41",
"id": "CVE-2022-0496-2d218215",
"digest": {
"threshold": 0.9,
"line_hashes": [
"104840646302914985118028507586666679707",
"290192162864074042858498841783119365612",
"129351661344461194091528965916417341165",
"202708110383139101075653018937083936016",
"69174987949301901940964503180918080048",
"271101462915753809679981024044093574209",
"36379956317467065235078098124512951203",
"111464875205028175271107682248788448728",
"219379521138952918494047257993133227178",
"331532785697622192092237433826546804796",
"244017198212517058412015092303819341423",
"56081805150064249445818754292008390736",
"337181698592156043535468985986190304910",
"175219831185231836785725466039276036509",
"282901159936443623880124927469027667030",
"69174987949301901940964503180918080048",
"271101462915753809679981024044093574209",
"36379956317467065235078098124512951203",
"111464875205028175271107682248788448728",
"219379521138952918494047257993133227178",
"7016578426519698825768555908807306373",
"121421248718489684711849881019924788079",
"41520838851822563568603610678022585120",
"63866660630917595136451409211490921174",
"175219831185231836785725466039276036509",
"292643001473904189793602732371252989260"
]
},
"signature_type": "Line"
}
]