Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 02 Jun 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-120 | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Mon, 01 Jun 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 01 Jun 2026 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was identified in Assimp up to 6.0.4. This impacts the function Assimp::MDL::HalfLife::HL1MDLLoader::read_animations of the file HL1MDLLoader.cpp of the component Half-Life 1 MDL Loader. Such manipulation leads to heap-based buffer overflow. The attack must be carried out locally. The exploit is publicly available and might be used. The project tagged the reported issue as bug. | |
| Title | Assimp Half-Life 1 MDL Loader HL1MDLLoader.cpp read_animations heap-based overflow | |
| First Time appeared |
Assimp
Assimp assimp |
|
| Weaknesses | CWE-119 CWE-122 |
|
| CPEs | cpe:2.3:a:assimp:assimp:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Assimp
Assimp assimp |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-06-01T15:23:32.882Z
Reserved: 2026-05-31T08:10:56.826Z
Link: CVE-2026-10230
Updated: 2026-06-01T15:14:54.194Z
Status : Deferred
Published: 2026-06-01T08:16:19.223
Modified: 2026-06-01T15:15:37.293
Link: CVE-2026-10230
OpenCVE Enrichment
Updated: 2026-06-02T14:00:10Z