CVE-2025-57109

Kitware VTK (Visualization Toolkit) 9.5.0 is vulnerable to Heap Use-After-Free in vtkGLTFImporter::ImportActors. When processing GLTF files with invalid scene node references, the application accesses string members of mesh objects that have been previously freed during actor import operations.
Configurations

No configuration.

History

30 Oct 2025, 21:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5
CWE CWE-416

30 Oct 2025, 19:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-10-30 19:16

Updated : 2025-10-30 21:15


NVD link : CVE-2025-57109

Mitre link : CVE-2025-57109

CVE.ORG link : CVE-2025-57109


JSON object : View

Products Affected

No product.

CWE
CWE-416

Use After Free