CVE-2023-35953

HIGH

libigl 2.4.0 - Stack-based Buffer Overflow in OFF File Parser

Title source: llm
STIX 2.1

Description

Multiple stack-based buffer overflow vulnerabilities exist in the readOFF.cpp functionality of libigl v2.4.0. A specially-crafted .off file can lead to a buffer overflow. An attacker can arbitrary code execution to trigger these vulnerabilities.This vulnerability exists within the code responsible for parsing comments within the geometric vertices section within an OFF file.

References (2)

Core 2
Core References

Scores

CVSS v3 7.8
EPSS 0.0050
EPSS Percentile 38.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-121 CWE-787
Status published
Products (2)
libigl/libigl 2.4.0
libigl/libigl 2.5.0
Published May 28, 2024
Tracked Since Feb 18, 2026