An improper array index validation vulnerability exists in the stl_fix_normal_directions functionality of ADMesh Master Commit 767a105 and v0.98.4. A specially-crafted stl file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-0001 | An improper array index validation vulnerability exists in the stl_fix_normal_directions functionality of ADMesh Master Commit 767a105 and v0.98.4. A specially-crafted stl file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability. |
Github GHSA |
GHSA-v5hv-4pw3-q6h9 | ADMesh improper array index validation |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 11 Feb 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 22 Nov 2024 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Status: PUBLISHED
Assigner: talos
Published:
Updated: 2025-02-11T15:53:10.185Z
Reserved: 2022-08-18T18:40:36.548Z
Link: CVE-2022-38072
Updated: 2024-08-03T10:45:52.486Z
Status : Modified
Published: 2023-04-03T16:15:07.343
Modified: 2024-11-21T07:15:43.317
Link: CVE-2022-38072
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA