PT-2026-36478 · Unknown · Open Cascade Technology

Feng Ning

·

Published

2026-05-01

·

Updated

2026-05-01

·

CVE-2026-42479

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Open CASCADE Technology (OCCT) version V8 0 0 rc5
Description An out-of-bounds read in the VRML parser occurs within the VrmlData IndexedLineSet::TShape function. This issue allows attackers to cause a denial of service by using a crafted VRML file. The flaw exists because coordIndex values from the parsed input are used as direct array indices without being validated against the size of the coordinate array during geometry processing.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Out of bounds Read

Weakness Enumeration

Related Identifiers

CVE-2026-42479

Affected Products

Open Cascade Technology