Metrics
Affected Vendors & Products
Tue, 17 Jun 2025 20:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Assimp
Assimp assimp |
|
CPEs | cpe:2.3:a:assimp:assimp:*:*:*:*:*:*:*:* | |
Vendors & Products |
Assimp
Assimp assimp |
Tue, 17 Jun 2025 04:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
| |
Metrics |
threat_severity
|
threat_severity
|
Mon, 16 Jun 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 16 Jun 2025 11:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability classified as critical was found in Open Asset Import Library Assimp up to 5.4.3. Affected by this vulnerability is the function read_meshes in the library assimp/code/AssetLib/MDL/HalfLife/HL1MDLLoader.cpp. The manipulation leads to heap-based buffer overflow. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used. The project decided to collect all Fuzzer bugs in a main-issue to address them in the future. | |
Title | Open Asset Import Library Assimp HL1MDLLoader.cpp read_meshes heap-based overflow | |
Weaknesses | CWE-119 CWE-122 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-06-16T11:31:06.030Z
Updated: 2025-06-16T14:47:28.362Z
Reserved: 2025-06-15T10:18:10.430Z
Link: CVE-2025-6120

Updated: 2025-06-16T14:41:59.970Z

Status : Analyzed
Published: 2025-06-16T12:15:19.750
Modified: 2025-06-17T19:37:41.883
Link: CVE-2025-6120
