Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Open Asset Import Library Assimp MDLMaterialLoader.cpp ParseSkinLump_3DGS_MDL7 out-of-bounds
Vulnerability Description
A vulnerability classified as problematic has been found in Open Asset Import Library Assimp 5.4.3. This affects the function MDLImporter::ParseSkinLump_3DGS_MDL7 of the file assimp/code/AssetLib/MDL/MDLMaterialLoader.cpp. The manipulation leads to out-of-bounds read. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The project decided to collect all Fuzzer bugs in a main-issue to address them in the future.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Vulnerability Type
跨界内存读
Vulnerability Title
Assimp 缓冲区错误漏洞
Vulnerability Description
Assimp是Assimp开源的一个库。用于导入和导出各种三维模型格式。 Assimp 5.4.3版本存在缓冲区错误漏洞,该漏洞源于文件assimp/code/AssetLib/MDL/MDLMaterialLoader.cpp中的函数MDLImporter::ParseSkinLump_3DGS_MDL7存在越界读取问题。
CVSS Information
N/A
Vulnerability Type
N/A