Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://gitlab.kitware.com/vtk/vtk/-/issues/19732 |
|
Wed, 05 Nov 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:vtk:vtk:*:*:*:*:*:*:*:* |
Mon, 03 Nov 2025 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Vtk
Vtk vtk |
|
| Vendors & Products |
Vtk
Vtk vtk |
Fri, 31 Oct 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-122 | |
| Metrics |
cvssV3_1
|
Fri, 31 Oct 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Kitware VTK (Visualization Toolkit) through 9.5.0 contains a heap buffer overflow vulnerability in vtkGLTFDocumentLoader. When processing specially crafted GLTF files, the copy constructor of Accessor objects fails to properly validate buffer boundaries before performing memory read operations. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-10-31T18:06:36.870Z
Reserved: 2025-08-17T00:00:00.000Z
Link: CVE-2025-57107
Updated: 2025-10-31T18:05:35.940Z
Status : Analyzed
Published: 2025-10-31T15:15:42.443
Modified: 2025-11-05T19:42:17.657
Link: CVE-2025-57107
No data.
OpenCVE Enrichment
Updated: 2025-11-03T10:44:54Z