Skip to main content

CVE-2025-3548: Heap-based Buffer Overflow in Open Asset Import Library Assimp

Medium
VulnerabilityCVE-2025-3548cvecve-2025-3548
Published: Mon Apr 14 2025 (04/14/2025, 02:31:05 UTC)
Source: CVE Database V5
Vendor/Project: Open Asset Import Library
Product: Assimp

Description

A vulnerability, which was classified as critical, has been found in Open Asset Import Library Assimp up to 5.4.3. This issue affects the function aiString::Set in the library include/assimp/types.h of the component File Handler. The manipulation leads to heap-based buffer overflow. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue.

Technical Details

Data Version
5.1
Assigner Short Name
VulDB
Date Reserved
2025-04-13T17:45:16.448Z
Cvss Version
4.0
State
PUBLISHED

Threat ID: 6880a8b9ad5a09ad00232531

Added to database: 7/23/2025, 9:17:45 AM

Last updated: 7/23/2025, 9:17:45 AM

Views: 1

Actions

Please log in to the Console to use AI analysis features.

Need enhanced features?

Contact root@offseq.com for Pro access with improved analysis and higher rate limits.

Latest Threats