Описание
An issue in assimp v.5.4.3 allows a local attacker to execute arbitrary code via the CallbackToLogRedirector function within the Assimp library.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| assimp | fixed | 6.0.2+ds-1 | package | |
| assimp | postponed | trixie | package | |
| assimp | postponed | bookworm | package | |
| assimp | postponed | bullseye | package |
Примечания
https://github.com/assimp/assimp/issues/5788
https://github.com/assimp/assimp/pull/5918
https://github.com/assimp/assimp/commit/f12e52198669239af525e525ebb68407977f8e34 (v6.0.0)
Связанные уязвимости
An issue in assimp v.5.4.3 allows a local attacker to execute arbitrary code via the CallbackToLogRedirector function within the Assimp library.
An issue in assimp v.5.4.3 allows a local attacker to execute arbitrary code via the CallbackToLogRedirector function within the Assimp library.
An issue in assimp v.5.4.3 allows a local attacker to execute arbitrary code via the CallbackToLogRedirector function within the Assimp library.
An issue in assimp v.5.4.3 allows a local attacker to execute arbitrary code via the CallbackToLogRedirector function within the Assimp library.
Уязвимость функции CallbackToLogRedirector() кроссплатформенной библиотеки импорта 3D-моделей Assimp (Open Asset Import Library), позволяющая нарушителю выполнить произвольный код