CVE-2025-2755: Open Asset Import Library Assimp AC3D File ACLoader.cpp ConvertObjectSection out-of-bounds
A vulnerability was found in Open Asset Import Library Assimp 5.4.3. It has been rated as critical. Affected by this issue is the function Assimp::AC3DImporter::ConvertObjectSection of the file code/AssetLib/AC/ACLoader.cpp of the component AC3D File Handler. The manipulation of the argument src.entries leads to out-of-bounds read. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-2755?
CVE-2025-2755 is rated as critical due to its potential impact on user systems.
How do I fix CVE-2025-2755?
To fix CVE-2025-2755, upgrade to the latest version of Open Asset Import Library Assimp that addresses this vulnerability.
What component is affected by CVE-2025-2755?
CVE-2025-2755 affects the AC3D File Handler component in the function Assimp::AC3DImporter::ConvertObjectSection.
What products are impacted by CVE-2025-2755?
The vulnerability CVE-2025-2755 impacts the Open Asset Import Library Assimp, specifically version 5.4.3.
What are the risks of not mitigating CVE-2025-2755?
Not mitigating CVE-2025-2755 could result in critical security issues, including potential system compromise and exploitation by attackers.