Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-48424

Опубликовано: 24 окт. 2024
Источник: debian

Описание

A heap-buffer-overflow vulnerability has been identified in the OpenDDLParser::parseStructure function within the Assimp library, specifically during the processing of OpenGEX files.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
assimpfixed6.0.2+ds-1package
assimppostponedtrixiepackage
assimppostponedbookwormpackage
assimppostponedbullseyepackage

Примечания

  • https://github.com/assimp/assimp/issues/5787

  • https://github.com/assimp/assimp/commit/2b773f0f5a726c38dda72307b5311c14fc3a76ae (v6.0.0)

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 1 года назад

A heap-buffer-overflow vulnerability has been identified in the OpenDDLParser::parseStructure function within the Assimp library, specifically during the processing of OpenGEX files.

CVSS3: 5.5
redhat
больше 1 года назад

A heap-buffer-overflow vulnerability has been identified in the OpenDDLParser::parseStructure function within the Assimp library, specifically during the processing of OpenGEX files.

CVSS3: 5.5
nvd
больше 1 года назад

A heap-buffer-overflow vulnerability has been identified in the OpenDDLParser::parseStructure function within the Assimp library, specifically during the processing of OpenGEX files.

CVSS3: 5.5
github
больше 1 года назад

A heap-buffer-overflow vulnerability has been identified in the OpenDDLParser::parseStructure function within the Assimp library, specifically during the processing of OpenGEX files.

CVSS3: 5.5
fstec
больше 1 года назад

Уязвимость функции OpenDDLParser::parseStructure() библиотеки импорта 3D-моделей Open Asset Import Library (Assimp), позволяющая нарушителю вызвать отказ в обслуживании