Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-11277

Опубликовано: 05 окт. 2025
Источник: nvd
CVSS3: 5.3
CVSS3: 7.8
CVSS2: 4.3
EPSS Низкий

Описание

A weakness has been identified in Open Asset Import Library Assimp 6.0.2. This affects the function Q3DImporter::InternReadFile of the file assimp/code/AssetLib/Q3D/Q3DLoader.cpp. Executing manipulation can lead to heap-based buffer overflow. The attack needs to be launched locally. The exploit has been made available to the public and could be exploited.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:assimp:assimp:6.0.2:*:*:*:*:*:*:*

EPSS

Процентиль: 8%
0.0003
Низкий

5.3 Medium

CVSS3

7.8 High

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 5.3
ubuntu
2 месяца назад

A weakness has been identified in Open Asset Import Library Assimp 6.0.2. This affects the function Q3DImporter::InternReadFile of the file assimp/code/AssetLib/Q3D/Q3DLoader.cpp. Executing manipulation can lead to heap-based buffer overflow. The attack needs to be launched locally. The exploit has been made available to the public and could be exploited.

CVSS3: 5.3
debian
2 месяца назад

A weakness has been identified in Open Asset Import Library Assimp 6.0 ...

rocky
16 дней назад

Moderate: qt6-qtquick3d security update

rocky
27 дней назад

Moderate: qt5-qt3d security update

rocky
27 дней назад

Moderate: qt5-qt3d security update

EPSS

Процентиль: 8%
0.0003
Низкий

5.3 Medium

CVSS3

7.8 High

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-119