CVE-2025-3549 | Open Asset Import Library Assimp 5.4.3 File MD3Loader.cpp ValidateSurfaceHeaderOffsets heap-based overflow (Issue 6070)
A vulnerability, which was classified as critical, was found in Open Asset Import Library Assimp 5.4.3. Affected is the function Assimp::MD3Importer::ValidateSurfaceHeaderOffsets of the file code/AssetLib/MD3/MD3Loader.cpp of the component File Handler. The manipulation leads to heap-based buffer overflow.
This vulnerability is traded as CVE-2025-3549. The attack needs to be approached locally. Furthermore, there is an exploit available.