Multiple stack-based buffer overflow vulnerabilities exist in the readOFF functionality of libigl v2.5.0. A specially crafted .off file can lead to stack-based buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.This vulnerability concerns the parsing of comments within the vertex section of an `.off` file processed via the `readOFF` function.
References
| Link | Resource |
|---|---|
| https://talosintelligence.com/vulnerability_reports/TALOS-2024-1929 | Technical Description Third Party Advisory |
| https://www.talosintelligence.com/vulnerability_reports/TALOS-2024-1929 | Technical Description Third Party Advisory |
| https://talosintelligence.com/vulnerability_reports/TALOS-2024-1929 | Technical Description Third Party Advisory |
| https://www.talosintelligence.com/vulnerability_reports/TALOS-2024-1929 | Technical Description Third Party Advisory |
Configurations
History
11 Feb 2025, 22:29
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://talosintelligence.com/vulnerability_reports/TALOS-2024-1929 - Technical Description, Third Party Advisory | |
| References | () https://www.talosintelligence.com/vulnerability_reports/TALOS-2024-1929 - Technical Description, Third Party Advisory | |
| CWE | CWE-787 | |
| CPE | cpe:2.3:a:libigl:libigl:2.5.0:*:*:*:*:*:*:* | |
| First Time |
Libigl libigl
Libigl |
Information
Published : 2024-05-28 14:15
Updated : 2025-02-11 22:29
NVD link : CVE-2024-24685
Mitre link : CVE-2024-24685
CVE.ORG link : CVE-2024-24685
JSON object : View
Products Affected
libigl
- libigl
