CVE-2025-70072: Medium severity Assimp Assimp vulnerability
Published May 4, 2026
·Updated
An issue in Assimp v.6.0.2 allows a remote attacker to cause a denial of service via the FBXConverter.cpp, FBXConverter::ConvertMeshMultiMaterial() components
Affected Software
1 affected component
Assimp Assimp=6.0.2
Event History
May 4, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-70072?
CVE-2025-70072 has been classified as a denial of service vulnerability.
2
How does CVE-2025-70072 affect the Assimp v.6.0.2 software?
CVE-2025-70072 allows a remote attacker to exploit a flaw in FBXConverter.cpp to cause a denial of service.
3
How do I fix CVE-2025-70072?
To fix CVE-2025-70072, you should upgrade to a patched version of Assimp that resolves the vulnerability.
4
What components are involved in CVE-2025-70072?
CVE-2025-70072 specifically affects the FBXConverter::ConvertMeshMultiMaterial() component of Assimp v.6.0.2.
5
Can CVE-2025-70072 be exploited remotely?
Yes, CVE-2025-70072 can be exploited remotely by an attacker to lead to a denial of service.