Impact
A buffer overflow occurs in the Open Asset Import Library Assimp when parsing 3DGS MDL7 bone transformation keys; the function Assimp::MDLImporter::ParseBoneTrafoKeys_3DGS_MDL7 can be triggered with crafted input that manipulates the transmatrix_count and pcBoneTransforms arguments. This overflow may corrupt memory and, if exploited, can lead to arbitrary code execution or system compromise. The vulnerability is exploitable remotely through a malformed MDL file that an application processes.
Affected Systems
The flaw affects the Assimp library, particularly versions that include the commit 17c12da before patch 50d76798. The specifics of the vulnerable version range are not listed, so any build of Assimp that ships the unpatched MDLImporter module is potentially impacted. The CNA vendor is Open Asset Import Library Assimp, product Assimp.
Risk and Exploitability
The CVSS score of 5.3 rates the bug as moderate severity; the EPSS score is not available, but the attack can be launched remotely by supplying a malicious MDL file. It is not listed in CISA's KEV catalog, but the publicly disclosed exploit indicates that attackers could potentially target applications that rely on Assimp to import 3DGS MDL7 files. Administrators should consider the moderate likelihood of exploitation in environments that import such files.
OpenCVE Enrichment