What is CVE-2026-19969?
A vulnerability has been identified in the Assimp::MDLImporter::GenerateOutputMeshes_3DGS_MDL7 function of the Open Asset Import Library (Assimp). This could allow an attacker to perform manipulation via a crafted MDL7 file. Affected users should update the Assimp library to the latest version or restrict applications utilizing this function.
Azərbaycanca: Aşkar edilmiş boşluq Open Asset Import Library (Assimp) kitabxanasının 3DGS MDL7 model çıxış mesh generator funksiyasında yerləşir. Bu, hücumçuya xüsusi hazırlanmış MDL7 faylı vasitəsilə manipulyasiya etməyə imkan verə bilər. Təsirlənən istifadəçilər Assimp kitabxanasını ən son versiyaya yeniləməli və ya bu funksiyanı işləyən tətbiqləri məhdudlaşdırmalıdır.
FAQ2
In which function of the Assimp library was the CVE-2026-19969 vulnerability identified?
The vulnerability was identified in the Assimp::MDLImporter::GenerateOutputMeshes_3DGS_MDL7 function.
What should users do to protect against the CVE-2026-19969 vulnerability?
Users should update the Assimp library to the latest version or restrict applications utilizing this function.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.