Launch Week Day 1: Announcing Security Design Review
MEDIUM 5.5 PyPI

CVE-2024-48425

PYSEC-2024-293 · CVE-2024-48425

Published · Modified

Description

A segmentation fault (SEGV) was detected in the Assimp::SplitLargeMeshesProcess_Triangle::UpdateNode function within the Assimp library during fuzz testing using AddressSanitizer. The crash occurs due to a read access violation at address 0x000000000460, which points to the zero page, indicating a null or invalid pointer dereference.

Ready to move

Start Securing

Free, no credit card | First findings in minutes