PT-2026-36478 · Unknown · Open Cascade Technology
Feng Ning
·
Published
2026-05-01
·
Updated
2026-05-01
·
CVE-2026-42479
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Open CASCADE Technology (OCCT) version V8 0 0 rc5
Description
An out-of-bounds read in the VRML parser occurs within the
VrmlData IndexedLineSet::TShape function. This issue allows attackers to cause a denial of service by using a crafted VRML file. The flaw exists because coordIndex values from the parsed input are used as direct array indices without being validated against the size of the coordinate array during geometry processing.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Open Cascade Technology