Логотип exploitDog
bind:"CVE-2025-3015"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-3015"

Количество 7

Количество 7

ubuntu логотип

CVE-2025-3015

8 месяцев назад

A vulnerability classified as critical has been found in Open Asset Import Library Assimp 5.4.3. This affects the function Assimp::ASEImporter::BuildUniqueRepresentation of the file code/AssetLib/ASE/ASELoader.cpp of the component ASE File Handler. The manipulation of the argument mIndices leads to out-of-bounds read. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 6.0 is able to address this issue. The patch is named 7c705fde418d68cca4e8eff56be01b2617b0d6fe. It is recommended to apply a patch to fix this issue.

CVSS3: 6.3
EPSS: Низкий
nvd логотип

CVE-2025-3015

8 месяцев назад

A vulnerability classified as critical has been found in Open Asset Import Library Assimp 5.4.3. This affects the function Assimp::ASEImporter::BuildUniqueRepresentation of the file code/AssetLib/ASE/ASELoader.cpp of the component ASE File Handler. The manipulation of the argument mIndices leads to out-of-bounds read. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 6.0 is able to address this issue. The patch is named 7c705fde418d68cca4e8eff56be01b2617b0d6fe. It is recommended to apply a patch to fix this issue.

CVSS3: 6.3
EPSS: Низкий
debian логотип

CVE-2025-3015

8 месяцев назад

A vulnerability classified as critical has been found in Open Asset Im ...

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-j456-qg26-rqx4

8 месяцев назад

A vulnerability classified as critical has been found in Open Asset Import Library Assimp 5.4.3. This affects the function Assimp::ASEImporter::BuildUniqueRepresentation of the file code/AssetLib/ASE/ASELoader.cpp of the component ASE File Handler. The manipulation of the argument mIndices leads to out-of-bounds read. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 6.0 is able to address this issue. The patch is named 7c705fde418d68cca4e8eff56be01b2617b0d6fe. It is recommended to apply a patch to fix this issue.

CVSS3: 6.3
EPSS: Низкий
fstec логотип

BDU:2025-12928

8 месяцев назад

Уязвимость функции Assimp::ASEImporter::BuildUniqueRepresentation() (code/AssetLib/ASE/ASELoader.cpp) библиотеки импорта 3D-моделей Open Asset Import Library (Assimp), позволяющая нарушителю выполнить произвольный код

CVSS3: 8.8
EPSS: Низкий
redos логотип

ROS-20251008-09

около 2 месяцев назад

Множественные уязвимости assimp

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2025:0113-1

8 месяцев назад

Security update for assimp

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-3015

A vulnerability classified as critical has been found in Open Asset Import Library Assimp 5.4.3. This affects the function Assimp::ASEImporter::BuildUniqueRepresentation of the file code/AssetLib/ASE/ASELoader.cpp of the component ASE File Handler. The manipulation of the argument mIndices leads to out-of-bounds read. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 6.0 is able to address this issue. The patch is named 7c705fde418d68cca4e8eff56be01b2617b0d6fe. It is recommended to apply a patch to fix this issue.

CVSS3: 6.3
0%
Низкий
8 месяцев назад
nvd логотип
CVE-2025-3015

A vulnerability classified as critical has been found in Open Asset Import Library Assimp 5.4.3. This affects the function Assimp::ASEImporter::BuildUniqueRepresentation of the file code/AssetLib/ASE/ASELoader.cpp of the component ASE File Handler. The manipulation of the argument mIndices leads to out-of-bounds read. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 6.0 is able to address this issue. The patch is named 7c705fde418d68cca4e8eff56be01b2617b0d6fe. It is recommended to apply a patch to fix this issue.

CVSS3: 6.3
0%
Низкий
8 месяцев назад
debian логотип
CVE-2025-3015

A vulnerability classified as critical has been found in Open Asset Im ...

CVSS3: 6.3
0%
Низкий
8 месяцев назад
github логотип
GHSA-j456-qg26-rqx4

A vulnerability classified as critical has been found in Open Asset Import Library Assimp 5.4.3. This affects the function Assimp::ASEImporter::BuildUniqueRepresentation of the file code/AssetLib/ASE/ASELoader.cpp of the component ASE File Handler. The manipulation of the argument mIndices leads to out-of-bounds read. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 6.0 is able to address this issue. The patch is named 7c705fde418d68cca4e8eff56be01b2617b0d6fe. It is recommended to apply a patch to fix this issue.

CVSS3: 6.3
0%
Низкий
8 месяцев назад
fstec логотип
BDU:2025-12928

Уязвимость функции Assimp::ASEImporter::BuildUniqueRepresentation() (code/AssetLib/ASE/ASELoader.cpp) библиотеки импорта 3D-моделей Open Asset Import Library (Assimp), позволяющая нарушителю выполнить произвольный код

CVSS3: 8.8
0%
Низкий
8 месяцев назад
redos логотип
ROS-20251008-09

Множественные уязвимости assimp

CVSS3: 8.8
около 2 месяцев назад
suse-cvrf логотип
openSUSE-SU-2025:0113-1

Security update for assimp

8 месяцев назад

Уязвимостей на страницу