An issue was discovered in Open Design Alliance Drawings SDK before 2021.12. A memory allocation with excessive size vulnerability exists when reading malformed DGN files, which allows attackers to cause a crash, potentially enabling denial of service (crash, exit, or restart).
https://www.zerodayinitiative.com/advisories/ZDI-21-225/
https://www.opendesign.com/security-advisories
https://cert-portal.siemens.com/productcert/pdf/ssa-663999.pdf
https://cert-portal.siemens.com/productcert/pdf/ssa-155599.pdf