Heap-based buffer overflow vulnerability in Assimp prior to 5.4.2 allows local attacker to execute arbitrary code
CVE-2024-40724
What is CVE-2024-40724?
A heap-based buffer overflow vulnerability exists in the Assimp software, specifically in versions prior to 5.4.2. This vulnerability enables a local attacker to potentially execute arbitrary code by submitting a specially crafted file that exploits unhandled input processing. Such an exploit could compromise the integrity and security of the system running the affected software, allowing unauthorized code execution that may lead to further attacks or data breaches. Users are urged to upgrade to the latest version to mitigate this risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Assimp prior to 5.4.2
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
