Vulnerabilities
Vulnerable Software
Vtk:  >> Vtk  >> 9.5.0  Security Vulnerabilities
Kitware VTK (Visualization Toolkit) up to 9.5.0 is vulnerable to Buffer Overflow in vtkGLTFDocumentLoader. The vulnerability occurs in the BufferDataExtractionWorker template function when processing GLTF accessor data.
CVSS Score
7.5
EPSS Score
0.0
Published
2025-10-31
Kitware VTK (Visualization Toolkit) through 9.5.0 contains a heap buffer overflow vulnerability in vtkGLTFDocumentLoader. When processing specially crafted GLTF files, the copy constructor of Accessor objects fails to properly validate buffer boundaries before performing memory read operations.
CVSS Score
7.1
EPSS Score
0.0
Published
2025-10-31
Kitware VTK (Visualization Toolkit) through 9.5.0 contains a heap use-after-free vulnerability in vtkGLTFDocumentLoader. The vulnerability manifests during mesh object copy operations where vector members are accessed after the underlying memory has been freed, specifically when handling GLTF files with corrupted or invalid mesh reference structures.
CVSS Score
9.8
EPSS Score
0.0
Published
2025-10-31


Contact Us

Shodan ® - All rights reserved