VYPR
Medium severity5.3NVD Advisory· Published Jan 18, 2026· Updated Apr 29, 2026

CVE-2025-15538

CVE-2025-15538

Description

A security vulnerability has been detected in Open Asset Import Library Assimp up to 6.0.2. Affected by this vulnerability is the function Assimp::LWOImporter::FindUVChannels of the file /src/assimp/code/AssetLib/LWO/LWOMaterial.cpp. Such manipulation leads to use after free. The attack needs to be performed locally. The exploit has been disclosed publicly and may be used. This and similar defects are tracked and handled via issue #6128.

Affected products

1
  • cpe:2.3:a:assimp:assimp:*:*:*:*:*:*:*:*
    Range: <=6.0.2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.