CVE-2025-5203: Open Asset Import Library Assimp ParsingUtils.h SkipSpaces out-of-bounds
A vulnerability was found in Open Asset Import Library Assimp 5.4.3. It has been rated as problematic. Affected by this issue is the function SkipSpaces in the library assimp/include/assimp/ParsingUtils.h. The manipulation leads to out-of-bounds read. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The project decided to collect all Fuzzer bugs in a main-issue to address them in the future.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-5203?
CVE-2025-5203 has been rated as problematic due to the potential for out-of-bounds read vulnerabilities.
How does CVE-2025-5203 affect Open Asset Import Library Assimp?
CVE-2025-5203 affects the function SkipSpaces in the assimp/include/assimp/ParsingUtils.h file.
What is the impact of exploiting CVE-2025-5203?
Exploiting CVE-2025-5203 may lead to unauthorized access and manipulation of data due to out-of-bounds reads.
How do I mitigate CVE-2025-5203?
To mitigate CVE-2025-5203, upgrade to the latest version of the Open Asset Import Library Assimp.
Is local access required to exploit CVE-2025-5203?
Yes, local access is required to exploit the vulnerability CVE-2025-5203 in Assimp.