Logo
vulnerabilityCVE-2026-10198
Name
CVE-2026-10198
Source
NVD ( link)Debian ( link)
Description
A flaw has been found in Assimp up to 6.0.4. Affected by this vulnerability is the function Assimp::glTFImporter::ImportMeshes of the file glTFImporter.cpp of the component glTFImporter. This manipulation causes null pointer dereference. The attack is restricted to local execution. The exploit has been published and may be used. The project tagged the reported issue as bug.
Published Date
Updated Date
Workaround
-
Advisories

Analysis#


Affected Component
Analysis
assimp
Exploitable

Vulnerability Ratings#


1.9
CVSSv4
3.3
CVSSv31
1.7
CVSSv2
NaN
other

Others affected component#


Name
Project
Project Version
Version
Status
buildroot
master
6.0.5
Exploitable