Описание
Heap-based buffer overflow vulnerability in Assimp versions prior to 5.4.3 allows a local attacker to execute arbitrary code by importing a specially crafted file into the product.
Ссылки
- PatchRelease Notes
- Third Party Advisory
Уязвимые конфигурации
EPSS
8.4 High
CVSS3
Дефекты
Связанные уязвимости
Heap-based buffer overflow vulnerability in Assimp versions prior to 5.4.3 allows a local attacker to execute arbitrary code by importing a specially crafted file into the product.
Heap-based buffer overflow vulnerability in Assimp versions prior to 5 ...
Heap-based buffer overflow vulnerability in Assimp versions prior to 5.4.3 allows a local attacker to execute arbitrary code by importing a specially crafted file into the product.
Уязвимость библиотеки импорта 3D-моделей Open Asset Import Library (Assimp), связанная с переполнением буфера кучи, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
8.4 High
CVSS3