Heap-based buffer overflow vulnerability in Assimp versions prior to 5.4.2 allows a local attacker to execute arbitrary code by inputting a specially crafted file into the product.
Metrics
Affected Vendors & Products
References
History
Tue, 25 Mar 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-120 |
Wed, 07 Aug 2024 20:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Assimp
Assimp assimp |
|
Weaknesses | CWE-787 | |
CPEs | cpe:2.3:a:assimp:assimp:*:*:*:*:*:*:*:* | |
Vendors & Products |
Assimp
Assimp assimp |

Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2025-03-25T13:27:33.147Z
Reserved: 2024-07-09T06:39:54.634Z
Link: CVE-2024-40724

Updated: 2024-08-02T04:33:11.893Z

Status : Modified
Published: 2024-07-19T08:15:02.070
Modified: 2025-03-25T14:15:25.580
Link: CVE-2024-40724

No data.