First published: Mon Mar 10 2025(Updated: )
A vulnerability, which was classified as critical, has been found in Open Asset Import Library Assimp 5.4.3. This issue affects the function Assimp::BaseImporter::ConvertToUTF8 of the file BaseImporter.cpp of the component File Handler. The manipulation leads to heap-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Open Asset Import Library (Assimp) | ||
Assimp | =5.4.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-2152 is classified as a critical severity vulnerability.
To fix CVE-2025-2152, update Open Asset Import Library Assimp to the latest version that includes the security patch.
CVE-2025-2152 can lead to heap-based buffer overflow, potentially allowing attackers to execute arbitrary code.
CVE-2025-2152 affects Open Asset Import Library Assimp version 5.4.3.
CVE-2025-2152 affects the File Handler component within the Assimp::BaseImporter::ConvertToUTF8 function.