U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2025-3160

Change History

CVE Modified by CISA-ADP 4/03/2025 11:15:52 AM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://github.com/assimp/assimp/issues/6025#issue-2877385383

New CVE Received from VulDB 4/03/2025 11:15:52 AM

Action Type Old Value New Value
Added Description

								
							
							
						
A vulnerability has been found in Open Asset Import Library Assimp 5.4.3 and classified as problematic. This vulnerability affects the function Assimp::SceneCombiner::AddNodeHashes of the file code/Common/SceneCombiner.cpp of the component File Handler. The manipulation leads to out-of-bounds read. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. The patch is identified as a0993658f40d8e13ff5823990c30b43c82a5daf0. It is recommended to apply a patch to fix this issue.
Added CVSS V4.0

								
							
							
						
AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Added CVSS V3.1

								
							
							
						
AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Added CVSS V2

								
							
							
						
(AV:L/AC:L/Au:S/C:P/I:N/A:N)
Added CWE

								
							
							
						
CWE-119
Added CWE

								
							
							
						
CWE-125
Added Reference

								
							
							
						
https://github.com/assimp/assimp/commit/a0993658f40d8e13ff5823990c30b43c82a5daf0
Added Reference

								
							
							
						
https://github.com/assimp/assimp/issues/6025
Added Reference

								
							
							
						
https://github.com/assimp/assimp/issues/6025#issue-2877385383
Added Reference

								
							
							
						
https://github.com/assimp/assimp/pull/6049
Added Reference

								
							
							
						
https://vuldb.com/?ctiid.303106
Added Reference

								
							
							
						
https://vuldb.com/?id.303106
Added Reference

								
							
							
						
https://vuldb.com/?submit.542248