First published: Fri Jul 19 2024(Updated: )
Heap-based buffer overflow vulnerability in Assimp versions prior to 5.4.2 allows a local attacker to execute arbitrary code by inputting a specially crafted file into the product.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
<5.4.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-40724 is classified as a critical vulnerability due to the potential for remote code execution.
To fix CVE-2024-40724, upgrade Assimp to version 5.4.2 or later.
Assimp versions prior to 5.4.2 are affected by CVE-2024-40724.
CVE-2024-40724 is a heap-based buffer overflow vulnerability.
A local attacker can exploit CVE-2024-40724 by inputting a specially crafted file.