漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Open Asset Import Library Assimp CSMLoader.cpp InternReadFile heap-based overflow
Vulnerability Description
A vulnerability, which was classified as critical, has been found in Open Asset Import Library Assimp 5.4.3. This issue affects the function CSMImporter::InternReadFile of the file code/AssetLib/CSM/CSMLoader.cpp. The manipulation leads to heap-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The patch is named 2690e354da0c681db000cfd892a55226788f2743. It is recommended to apply a patch to fix this issue.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
Vulnerability Type
堆缓冲区溢出
Vulnerability Title
Open Asset Import Library 安全漏洞
Vulnerability Description
Open Asset Import Library(assimp)是Open Asset Import Library开源的一个库。 Open Asset Import Library 5.4.3版本存在安全漏洞,该漏洞源于code/AssetLib/CSM/CSMLoader.cpp文件的CSMImporter::InternReadFile函数存在堆缓冲区溢出。
CVSS Information
N/A
Vulnerability Type
N/A