Security Advisory

CVE-2025-57107

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-10-31 00:00:00
Last updated 2025-10-31 18:06:36
Assigner mitre
State PUBLISHED

Description

Kitware VTK (Visualization Toolkit) through 9.5.0 contains a heap buffer overflow vulnerability in vtkGLTFDocumentLoader. When processing specially crafted GLTF files, the copy constructor of Accessor objects fails to properly validate buffer boundaries before performing memory read operations.