Bugzilla – Bug 1225649
VUL-0: CVE-2023-35951: meshlab: stack-based buffer overflow vulnerabilities exist in the readOFF.cpp
Last modified: 2024-05-30 11:15:02 UTC
Multiple stack-based buffer overflow vulnerabilities exist in the readOFF.cpp functionality of libigl v2.4.0. A specially-crafted .off file can lead to a buffer overflow. An attacker can arbitrary code execution to trigger these vulnerabilities.This vulnerability exists within the code responsible for parsing geometric vertices of an OFF file. References: https://talosintelligence.com/vulnerability_reports/TALOS-2023-1784 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-35951 https://www.cve.org/CVERecord?id=CVE-2023-35951 https://bugzilla.redhat.com/show_bug.cgi?id=2283910