CVE-2024-45679: Buffer Overflow
Published Sep 18, 2024
·Updated
Heap-based buffer overflow vulnerability in Assimp versions prior to 5.4.3 allows a local attacker to execute arbitrary code by importing a specially crafted file into the product.
Affected Software
2 affected components
Assimp Assimp<5.4.3
Assimp Assimp<5.4.3
Remediation
Patch Available
Event History
Sep 18, 2024
CVE Published
via MITRE·03:35 AM
Data Sourced
via MITRE·03:35 AM
DescriptionWeakness
Data Sourced
via NVD·04:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-45679?
CVE-2024-45679 is classified as a high severity vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2024-45679?
To fix CVE-2024-45679, upgrade to Assimp version 5.4.3 or later.
3
Who is affected by CVE-2024-45679?
CVE-2024-45679 affects all versions of Assimp prior to 5.4.3.
4
What type of vulnerability is CVE-2024-45679?
CVE-2024-45679 is a heap-based buffer overflow vulnerability.
5
What can an attacker do exploiting CVE-2024-45679?
An attacker can execute arbitrary code by importing a specially crafted file into the affected software.