CVE-2020-28589
11.08.2021, 13:15
An improper array index validation vulnerability exists in the LoadObj functionality of tinyobjloader v2.0-rc1 and tinyobjloader development commit 79d4421. A specially crafted file could lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.Enginsight
| Vendor | Product | Version |
|---|---|---|
| tinyobjloader_project | tinyobjloader | 2.0:rc1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases