{"id":"CVE-2026-63273","published":"2026-09-22T12:17:13.007","lastModified":"2026-09-22T19:09:32.273","description":"LibreOffice Draw can import PDF documents. A heap buffer overflow existed when importing an encrypted document. The length of the decryption key was taken from the document's own encryption dictionary and was used to fill a fixed size key buffer without being checked against it, so a length larger than that buffer wrote past its end. In fixed versions a declared key length larger than the buffer is rejected.","cvssScore":null,"cvssSeverity":null,"cvssVector":null,"cwes":["CWE-787"],"vendors":[],"products":[],"references":[{"url":"https://www.libreoffice.org/about-us/security/advisories/cve-2026-63273","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}