[Git][security-tracker-team/security-tracker][master] Add CVE-2024-45679/assimp

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Sep 18 21:59:15 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
139e8603 by Salvatore Bonaccorso at 2024-09-18T22:53:39+02:00
Add CVE-2024-45679/assimp

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -129,7 +129,9 @@ CVE-2024-45858 (An arbitrary code execution vulnerability exists in versions 0.2
 CVE-2024-45813 (find-my-way is a fast, open source HTTP router, internally using a Rad ...)
 	NOT-FOR-US: find-my-way
 CVE-2024-45679 (Heap-based buffer overflow vulnerability in Assimp versions prior to 5 ...)
-	TODO: check
+	- assimp 5.4.0+ds-1
+	NOTE: https://github.com/assimp/assimp/pull/5310
+	NOTE: https://github.com/assimp/assimp/commit/e4e2c63e0c2c449cd69fb9a3269e865eb83c241d (v5.4.0)
 CVE-2024-45601 (Mesop is a Python-based UI framework designed for rapid web apps devel ...)
 	TODO: check
 CVE-2024-45523 (An issue was discovered in Bravura Security Fabric versions 12.3.x bef ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/139e86039077e41cb98123983ec6ec9931160ff4

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/139e86039077e41cb98123983ec6ec9931160ff4
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240918/fe77c7f8/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list