Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 11 Jun 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-120 | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Mon, 01 Jun 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 01 Jun 2026 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in Assimp up to 6.0.4. This affects the function HL1MDLLoader::read_meshes of the file HL1MDLLoader.cpp of the component Half-Life 1 MDL Loader. This manipulation causes heap-based buffer overflow. The attack is restricted to local execution. The exploit has been publicly disclosed and may be utilized. The project tagged the reported issue as bug. | |
| Title | Assimp Half-Life 1 MDL Loader HL1MDLLoader.cpp read_meshes heap-based overflow | |
| First Time appeared |
Assimp
Assimp assimp |
|
| Weaknesses | CWE-119 CWE-122 |
|
| CPEs | cpe:2.3:a:assimp:assimp:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Assimp
Assimp assimp |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-06-01T14:54:34.944Z
Reserved: 2026-05-31T08:10:54.492Z
Link: CVE-2026-10229
Updated: 2026-06-01T14:54:31.179Z
Status : Deferred
Published: 2026-06-01T08:16:19.037
Modified: 2026-06-01T15:15:37.293
Link: CVE-2026-10229
OpenCVE Enrichment
Updated: 2026-06-11T01:30:36Z