216.73.216.220

CVE-2025-8854

· Published 11/08/2025 05:15 · Modified 11/08/2025 21:15

Labels: CVE-2025-8854 2025-08-1196148269-fe82-4198-b1bf-3a73ce8bc92eCVE-2025-8854CWE-120

Essential information

Published
11/08/2025 05:15
Modified
11/08/2025 21:15
Author
Creator
CVSS
8.4 HIGH (v3) 8.4 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Stack-based buffer overflow in LoadOFF in bulletphysics bullet3 before 3.26 on all platforms allows remote attackers to execute arbitrary code via a crafted OFF file with an overlong initial token processed by the VHACD test utility or invoked indirectly through PyBullet's vhacd function.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
96148269-fe82-4198-b1bf-3a73ce8bc92e
NVD
View on NVD

Affected products (CPE)

ProductCPE
bulletphysics / bullet3 cpe:2.3:a:bulletphysics:bullet3:<3.26:*:*:*:*:*:*:*

References