Heap-based buffer overflow vulnerability in Assimp versions prior to 5.4.2 allows a local attacker to execute arbitrary code by inputting a specially crafted file into the product.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 25 Mar 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-120 |
Wed, 07 Aug 2024 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Assimp
Assimp assimp |
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:assimp:assimp:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Assimp
Assimp assimp |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2025-03-25T13:27:33.147Z
Reserved: 2024-07-09T06:39:54.634Z
Link: CVE-2024-40724
Updated: 2024-08-02T04:33:11.893Z
Status : Modified
Published: 2024-07-19T08:15:02.070
Modified: 2025-03-25T14:15:25.580
Link: CVE-2024-40724
No data.
OpenCVE Enrichment
No data.