A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD files. This instance exists in the USDC file format FIELDS section decompression heap overflow.
References
Link | Resource |
---|---|
http://seclists.org/fulldisclosure/2020/Nov/20 | Mailing List Third Party Advisory |
https://talosintelligence.com/vulnerability_reports/TALOS-2020-1094 | Exploit Third Party Advisory |
http://seclists.org/fulldisclosure/2020/Nov/20 | Mailing List Third Party Advisory |
https://talosintelligence.com/vulnerability_reports/TALOS-2020-1094 | Exploit Third Party Advisory |
Configurations
History
21 Nov 2024, 05:35
Type | Values Removed | Values Added |
---|---|---|
References | () http://seclists.org/fulldisclosure/2020/Nov/20 - Mailing List, Third Party Advisory | |
References | () https://talosintelligence.com/vulnerability_reports/TALOS-2020-1094 - Exploit, Third Party Advisory |
Information
Published : 2020-11-13 15:15
Updated : 2024-11-21 05:35
NVD link : CVE-2020-6147
Mitre link : CVE-2020-6147
CVE.ORG link : CVE-2020-6147
JSON object : View
Products Affected
pixar
- openusd
apple
- iphone_os
- ipados