The vendor explicitly identifies these products as affected by this CVE.
- qt6-qtquick3d as a component of Red Hat Enterprise Linux 10
- qt6-qtquick3d-devel as a component of Red Hat Enterprise Linux 10
- qt6-qtquick3d-examples as a component of Red Hat Enterprise Linux 10
- qt6-qtquick3d.src as a component of Red Hat Enterprise Linux 10
- qt5-qt3d as a component of Red Hat Enterprise Linux 9
- qt5-qt3d-devel as a component of Red Hat Enterprise Linux 9
- qt5-qt3d-examples as a component of Red Hat Enterprise Linux 9
- qt5-qt3d.src as a component of Red Hat Enterprise Linux 9
- Summary
- A flaw was found in Open Asset Import Library Assimp. A buffer overflow vulnerability exists in the `GenerateOutputMeshes_3DGS_MDL7` function when processing 3DGS MDL7 models. A remote attacker could exploit this to cause a denial of service or potentially disclose sensitive information.
- Remediation
- Fix deferred
