Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mm44-q4q5-7mg9

Опубликовано: 30 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Kitware VTK (Visualization Toolkit) 9.5.0 is vulnerable to Heap Use-After-Free in vtkGLTFImporter::ImportActors. When processing GLTF files with invalid scene node references, the application accesses string members of mesh objects that have been previously freed during actor import operations.

Kitware VTK (Visualization Toolkit) 9.5.0 is vulnerable to Heap Use-After-Free in vtkGLTFImporter::ImportActors. When processing GLTF files with invalid scene node references, the application accesses string members of mesh objects that have been previously freed during actor import operations.

EPSS

Процентиль: 17%
0.00055
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 6.5
ubuntu
3 месяца назад

Kitware VTK (Visualization Toolkit) 9.5.0 is vulnerable to Heap Use-After-Free in vtkGLTFImporter::ImportActors. When processing GLTF files with invalid scene node references, the application accesses string members of mesh objects that have been previously freed during actor import operations.

CVSS3: 6.5
nvd
3 месяца назад

Kitware VTK (Visualization Toolkit) 9.5.0 is vulnerable to Heap Use-After-Free in vtkGLTFImporter::ImportActors. When processing GLTF files with invalid scene node references, the application accesses string members of mesh objects that have been previously freed during actor import operations.

CVSS3: 6.5
debian
3 месяца назад

Kitware VTK (Visualization Toolkit) 9.5.0 is vulnerable to Heap Use-Af ...

EPSS

Процентиль: 17%
0.00055
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-416