CVE-2026-10200

5.3 MEDIUM
Published: May 31, 2026 Modified: June 01, 2026
View on NVD

Description

A vulnerability was found in Assimp up to 6.0.4. This affects the function glTFCommon::CopyValue in the library glTFCommon.h of the component 4x4 Matrix Parser. Performing a manipulation results in heap-based buffer overflow. The attack must be initiated from a local position. The exploit has been made public and could be used. The project tagged the reported issue as bug.

AI Explanation

### 1. Plain-Language Summary This vulnerability allows an attacker to crash an application or execute malicious code by tricking it into processing a specially crafted glTF 3D file. The flaw occurs in Assimp's matrix-handling code during file parsing, causing memory corruption. ### 2. Who Is Affected - **Product**: Assimp (Open Asset Import Library) - **Affected Versions**: All versions up to and including **6.0.4** - **Specific Component**: The `glTFCommon::CopyValue` function in `glTFCommon.h` (part of the 4x4 Matrix Parser for glTF files). - **Note**: Applications using Assimp to load/process untrusted glTF files are vulnerable (e.g., 3D modeling tools, game engines). ### 3. Attacker Impact - **Immediate Effect**: Crash the application via heap buffer overflow (denial-of-service). - **Potential Escalation**: Execute arbitrary code on the victim's system (if the attacker can control heap memory manipulation). - **Attack Vector**: Requires the attacker to **deliver a malicious glTF file locally** (e.g., via email, download, or USB). The exploit is public, increasing risk. ### 4. Recommended Remediation Steps 1. **Upgrade Assimp**: Update to a patched version beyond **

Generated: 2026-06-01 01:02

CVSS v3.x Details

0.0 Low Medium High Critical 10.0
Vector String
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory

7 reference(s) from NVD

Quick Stats

CVSS v3 Score
5.3 / 10.0
EPSS (Exploit Probability)
0.1%
2th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)