CVE-2026-42478
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD
Description
An issue was discovered in VrmlData_IndexedFaceSet::TShape in the VRML V2.0 parser in Open CASCADE Technology (OCCT) V8_0_0_rc5 allows attackers to cause a denial of service via a crafted VRML file. The issue occurs because malformed VRML input can trigger dereference of a corrupt or unvalidated pointer during shape construction in libTKDEVRML.so.
Affected (7)
Products: Opencascade: Open Cascade Technology
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 7.9.3 |
Related CWEs
References (1)
Source: cve@mitre.org
Third Party Advisory
Timeline
No history available yet.