CVE-2025-2750
CVSS 3.1 Score 8.6 of 10 (high)
Details
Published Mar 25, 2025
Updated: Mar 27, 2025
CWE ID 918
Summary
CVE-2025-2750 is a critical vulnerability affecting Open Asset Import Library Assimp 5.4.3. Specifically, the Assimp::CSMImporter::InternReadFile function in the CSM File Handler's CSMLoader.cpp file contains an out-of-bounds write vulnerability. This issue can be exploited remotely, and the code for the exploit has been made public, increasing the risk of active attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- ziti-console
Affected Vendors
- OpenZiti