Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Open Asset Import Library Assimp MDC File Parser MDCLoader.cpp InternReadFile out-of-bounds
Vulnerability Description
A vulnerability was found in Open Asset Import Library Assimp 5.4.3. It has been classified as problematic. Affected is the function MDCImporter::InternReadFile of the file assimp/code/AssetLib/MDC/MDCLoader.cpp of the component MDC File Parser. The manipulation of the argument pcVerts leads to out-of-bounds read. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used. The project decided to collect all Fuzzer bugs in a main-issue to address them in the future.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Vulnerability Type
跨界内存读
Vulnerability Title
Assimp 缓冲区错误漏洞
Vulnerability Description
Assimp是Assimp开源的一个库。用于导入和导出各种三维模型格式。 Assimp 5.4.3版本存在缓冲区错误漏洞,该漏洞源于参数pcVerts操作导致越界读取。
CVSS Information
N/A
Vulnerability Type
N/A