Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-31341 | A security flaw has been discovered in OGRECave Ogre up to 14.4.1. This issue affects the function STBIImageCodec::encode of the file /ogre/PlugIns/STBICodec/src/OgreSTBICodec.cpp of the component Image Handler. The manipulation results in heap-based buffer overflow. The attack is only possible with local access. The exploit has been released to the public and may be exploited. |
Thu, 16 Oct 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ogre3d
Ogre3d ogre |
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:ogre3d:ogre:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ogre3d
Ogre3d ogre |
Mon, 29 Sep 2025 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ogrecave
Ogrecave ogre |
|
| Vendors & Products |
Ogrecave
Ogrecave ogre |
Fri, 26 Sep 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 26 Sep 2025 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security flaw has been discovered in OGRECave Ogre up to 14.4.1. This issue affects the function STBIImageCodec::encode of the file /ogre/PlugIns/STBICodec/src/OgreSTBICodec.cpp of the component Image Handler. The manipulation results in heap-based buffer overflow. The attack is only possible with local access. The exploit has been released to the public and may be exploited. | |
| Title | OGRECave Ogre Image OgreSTBICodec.cpp encode heap-based overflow | |
| Weaknesses | CWE-119 CWE-122 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-09-26T12:59:56.473Z
Reserved: 2025-09-26T06:40:40.315Z
Link: CVE-2025-11014
Updated: 2025-09-26T12:59:42.586Z
Status : Analyzed
Published: 2025-09-26T13:15:41.317
Modified: 2026-04-29T01:00:01.613
Link: CVE-2025-11014
No data.
OpenCVE Enrichment
Updated: 2025-09-29T09:30:22Z
EUVD