PT-2026-20381 · Admesh · Admesh

Liontree

·

Published

2026-01-01

·

Updated

2026-02-18

·

CVE-2026-2653

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions admesh versions up to 0.98.5
Description A security flaw exists in admesh up to version 0.98.5. The issue resides in the stl check normal vector function within the src/normals.c file, leading to a heap-based buffer overflow when a manipulation is performed. The attack requires local access. The exploit has been publicly released.
Recommendations Versions prior to 0.98.5 are vulnerable. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Heap Based Buffer Overflow

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2026-2653
PYSEC-2026-5

Affected Products

Admesh