← Back

CVE-2023-35952

nvd nist
Published: May 28, 2024Modified: Feb 12, 2025

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: CNA (Secondary)

Description

Multiple stack-based buffer overflow vulnerabilities exist in the readOFF.cpp functionality of libigl v2.4.0. A specially-crafted .off file can lead to a buffer overflow. An attacker can arbitrary code execution to trigger these vulnerabilities.This vulnerability exists within the code responsible for parsing comments within the geometric faces section within an OFF file.

Affected (2)

Products: Libigl: Libigl
1 product
Libigl
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Libigl
Version 2.4.0
Version 2.5.0

References (4)

Source: talos-cna@cisco.com
ExploitMitigationThird Party Advisory
Source: talos-cna@cisco.com
ExploitMitigationThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitMitigationThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitMitigationThird Party Advisory

Timeline

No history available yet.