216.73.216.197

CVE-2025-3010

· Published 31/03/2025 20:15 · Modified 01/04/2025 20:26

Labels: CVE-2025-3010 2025-03-31CVE-2025-3010CWE-404[email protected]

Essential information

Published
31/03/2025 20:15
Modified
01/04/2025 20:26
Author
Creator
CVSS
4.8 MEDIUM (v3) 4.8 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A vulnerability, which was classified as problematic, has been found in Khronos Group glslang 15.1.0. Affected by this issue is the function glslang::TIntermediate::isConversionAllowed of the file glslang/MachineIndependent/Intermediate.cpp. The manipulation leads to null pointer dereference. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
khronos group / glslang cpe:2.3:a:khronos_group:glslang:15.1.0:*:*:*:*:*:*:*

References