PT-2026-55650 · Assimp · Assimp

·

CVE-2026-14610

·

Published

2026-07-03

·

Updated

2026-07-24

CVSS v3.1

5.3

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Open Asset Import Library Assimp versions prior to 6.0.6
Description A heap-based buffer overflow occurs in the CSM File Handler component. The issue resides in the Assimp::CSMImporter::InternReadFile() function within the code/AssetLib/CSM/CSMLoader.cpp file. This flaw allows for local execution to trigger the overflow.
Recommendations Apply patch eb84eec580d3f4ba2f0fd87409b7d0744620f11e to resolve the issue.

Exploit

Fix

Buffer Overflow

Heap Based Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-14610
OESA-2026-3104
OESA-2026-3105
OESA-2026-3106
OESA-2026-3107

Affected Products

Assimp