Executive brief
Assimp is a widely used library for importing various 3D model formats into applications. A vulnerability in its 4x4 matrix parser could allow a local attacker to cause a system crash or potentially execute unauthorized code by providing a specially crafted 3D file. This could impact the stability of applications using the library and potentially lead to unauthorized access to local data.
Technical details
A heap-based buffer overflow vulnerability exists in Assimp versions up to 6.0.4 within the glTFCommon::CopyValue function in glTFCommon.h. The issue occurs during the parsing of 4x4 matrices when the input data is insufficient or malformed, leading to out-of-bounds memory access. An attacker with local access can exploit this by providing a malicious glTF file to an application using the library. Successful exploitation could result in a denial of service (crash) or arbitrary code execution in the context of the application. A public proof-of-concept exploit has been disclosed.
Affected products
- Assimp Assimp up to 6.0.4
Timeline
- 2026-05-31: disclosed: Vulnerability reported and public exploit released.
- 2026-05-31: advisory: NVD and VulDB published advisory details.