Bug 2407262 (CVE-2025-14439, GHSA-grjp-54v3-c442)
| Summary: | CVE-2025-14439 usd: OpenUSD: Remote Code Execution via a specially crafted file | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | OSIDB Bzimport <bzimport> |
| Component: | vulnerability | Assignee: | Product Security DevOps Team <prodsec-dev> |
| Status: | NEW --- | QA Contact: | |
| Severity: | medium | Docs Contact: | |
| Priority: | medium | ||
| Version: | unspecified | Keywords: | Security |
| Target Milestone: | --- | ||
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | --- | |
| Doc Text: |
A use-after-free vulnerability has been identified in the USD (Universal Scene Description) framework when processing specially crafted crate files containing invalid primChildren entries. Improper validation of malformed or duplicate entries may lead to memory access after free conditions during child traversal. An attacker could exploit this issue by supplying a malicious USD crate file that triggers memory corruption during import or parsing, potentially resulting in application crashes or execution of arbitrary code.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | Type: | --- | |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | 2422275, 2422276 | ||
| Bug Blocks: | |||
|
Description
OSIDB Bzimport
2025-10-29 23:06:00 UTC
|