CNNVD-202508-069 Information

CNNVD ID

CNNVD-202508-069

CVE-2025-53009

  • CNNVD Published: 2025-08-01

Description (Chinese)

MaterialX是Academy Software Foundation开源的一个材料渲染软件。 MaterialX 1.39.2及之前版本存在安全漏洞,该漏洞源于解析MTLX文件时存在栈耗尽问题,可能导致程序崩溃。

Description (English)

MaterialX is an open-source material rendering software for Academy Software Foundation. There is a security loophole in the MaterialX 1.39.2 and earlier versions, which stems from the stowage of the MTLX document and could lead to the collapse of the process.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Academy Software Foundation

Published

2025-08-01

Last Modified

2026-02-24

References

https://github.com/AcademySoftwareFoundation/MaterialX/releases/tag/v1.39.3 https://github.com/AcademySoftwareFoundation/MaterialX/security/advisories/GHSA-wx6g-fm6f-w822 https://github.com/AcademySoftwareFoundation/MaterialX/pull/2505 https://github.com/ShielderSec/poc/tree/main/CVE-2025-53009 https://github.com/AcademySoftwareFoundation/MaterialX/issues/2504 https://nvd.nist.gov/vuln/detail/CVE-2025-53009 https://access.redhat.com/security/cve/cve-2025-53009

Patch

https://materialx.org/

Share on: