Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2jqc-4vc4-2j4m

Опубликовано: 25 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 5.3
CVSS3: 4.3

Описание

A vulnerability was found in Open Asset Import Library Assimp 5.4.3 and classified as problematic. This issue affects the function fast_atoreal_move in the library include/assimp/fast_atof.h of the component CSM File Handler. The manipulation leads to out-of-bounds read. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

A vulnerability was found in Open Asset Import Library Assimp 5.4.3 and classified as problematic. This issue affects the function fast_atoreal_move in the library include/assimp/fast_atof.h of the component CSM File Handler. The manipulation leads to out-of-bounds read. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 61%
0.00413
Низкий

5.3 Medium

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 4.3
ubuntu
11 месяцев назад

A vulnerability was found in Open Asset Import Library Assimp 5.4.3 and classified as problematic. This issue affects the function fast_atoreal_move in the library include/assimp/fast_atof.h of the component CSM File Handler. The manipulation leads to out-of-bounds read. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 4.3
nvd
11 месяцев назад

A vulnerability was found in Open Asset Import Library Assimp 5.4.3 and classified as problematic. This issue affects the function fast_atoreal_move in the library include/assimp/fast_atof.h of the component CSM File Handler. The manipulation leads to out-of-bounds read. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 4.3
debian
11 месяцев назад

A vulnerability was found in Open Asset Import Library Assimp 5.4.3 an ...

EPSS

Процентиль: 61%
0.00413
Низкий

5.3 Medium

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-119