vulnerability

SUSE: CVE-2024-40724: SUSE Linux Security Advisory

Severity
7
CVSS
(AV:L/AC:L/Au:S/C:C/I:C/A:C)
Published
07/19/2024
Added
07/29/2024
Modified
01/28/2025

Description

Heap-based buffer overflow vulnerability in Assimp versions prior to 5.4.2 allows a local attacker to execute arbitrary code by inputting a specially crafted file into the product.

Solution(s)

suse-upgrade-assimp-develsuse-upgrade-libassimp5suse-upgrade-libqt5-qt3d-develsuse-upgrade-libqt5-qt3d-examplessuse-upgrade-libqt5-qt3d-importssuse-upgrade-libqt5-qt3d-private-headers-develsuse-upgrade-libqt5-qt3d-toolssuse-upgrade-libqt5-qtquick3d-develsuse-upgrade-libqt5-qtquick3d-examplessuse-upgrade-libqt5-qtquick3d-importssuse-upgrade-libqt5-qtquick3d-private-headers-develsuse-upgrade-libqt5-qtquick3d-toolssuse-upgrade-libqt53danimation-develsuse-upgrade-libqt53danimation5suse-upgrade-libqt53dcore-develsuse-upgrade-libqt53dcore5suse-upgrade-libqt53dextras-develsuse-upgrade-libqt53dextras5suse-upgrade-libqt53dinput-develsuse-upgrade-libqt53dinput5suse-upgrade-libqt53dlogic-develsuse-upgrade-libqt53dlogic5suse-upgrade-libqt53dquick-develsuse-upgrade-libqt53dquick5suse-upgrade-libqt53dquickanimation-develsuse-upgrade-libqt53dquickanimation5suse-upgrade-libqt53dquickextras-develsuse-upgrade-libqt53dquickextras5suse-upgrade-libqt53dquickinput-develsuse-upgrade-libqt53dquickinput5suse-upgrade-libqt53dquickrender-develsuse-upgrade-libqt53dquickrender5suse-upgrade-libqt53dquickscene2d-develsuse-upgrade-libqt53dquickscene2d5suse-upgrade-libqt53drender-develsuse-upgrade-libqt53drender5suse-upgrade-libqt5quick3d5suse-upgrade-libqt5quick3dassetimport5
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.