CVE-2024-24584

Multiple out-of-bounds read vulnerabilities exist in the readMSH functionality of libigl v2.5.0. A specially crafted .msh file can lead to an out-of-bounds read. An attacker can provide a malicious file to trigger this vulnerability.This vulnerabilitty concerns the`readMSH` function while processing `MshLoader::ELEMENT_TET` elements.
References
Link Resource
https://talosintelligence.com/vulnerability_reports/TALOS-2024-1928 Technical Description Third Party Advisory
https://www.talosintelligence.com/vulnerability_reports/TALOS-2024-1928 Technical Description Third Party Advisory
https://talosintelligence.com/vulnerability_reports/TALOS-2024-1928 Technical Description Third Party Advisory
https://www.talosintelligence.com/vulnerability_reports/TALOS-2024-1928 Technical Description Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:libigl:libigl:2.5.0:*:*:*:*:*:*:*

History

11 Feb 2025, 22:29

Type Values Removed Values Added
References () https://talosintelligence.com/vulnerability_reports/TALOS-2024-1928 - () https://talosintelligence.com/vulnerability_reports/TALOS-2024-1928 - Technical Description, Third Party Advisory
References () https://www.talosintelligence.com/vulnerability_reports/TALOS-2024-1928 - () https://www.talosintelligence.com/vulnerability_reports/TALOS-2024-1928 - Technical Description, Third Party Advisory
CPE cpe:2.3:a:libigl:libigl:2.5.0:*:*:*:*:*:*:*
First Time Libigl
Libigl libigl

21 Nov 2024, 08:59

Type Values Removed Values Added
References () https://talosintelligence.com/vulnerability_reports/TALOS-2024-1928 - () https://talosintelligence.com/vulnerability_reports/TALOS-2024-1928 -
References () https://www.talosintelligence.com/vulnerability_reports/TALOS-2024-1928 - () https://www.talosintelligence.com/vulnerability_reports/TALOS-2024-1928 -

10 Jun 2024, 17:16

Type Values Removed Values Added
Summary
  • (es) Existen múltiples vulnerabilidades de lectura fuera de los límites en la funcionalidad readMSH de libigl v2.5.0. Un archivo .msh especialmente manipulado puede provocar una lectura fuera de los límites. Un atacante puede proporcionar un archivo malicioso para desencadenar esta vulnerabilidad. Esta vulnerabilidad afecta a la función `readMSH` mientras procesa elementos `MshLoader::ELEMENT_TET`.
References
  • () https://www.talosintelligence.com/vulnerability_reports/TALOS-2024-1928 -

28 May 2024, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-28 14:15

Updated : 2025-02-11 22:29


NVD link : CVE-2024-24584

Mitre link : CVE-2024-24584

CVE.ORG link : CVE-2024-24584


JSON object : View

Products Affected

libigl

  • libigl
CWE
CWE-125

Out-of-bounds Read