Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-42478

Опубликовано: 01 мая 2026
Источник: nvd
CVSS3: 7.5
CVSS3: 5.5
EPSS Низкий

Описание

An issue was discovered in VrmlData_IndexedFaceSet::TShape in the VRML V2.0 parser in Open CASCADE Technology (OCCT) V8_0_0_rc5 allows attackers to cause a denial of service via a crafted VRML file. The issue occurs because malformed VRML input can trigger dereference of a corrupt or unvalidated pointer during shape construction in libTKDEVRML.so.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:opencascade:open_cascade_technology:*:*:*:*:*:*:*:*
Версия до 7.9.3 (включая)
cpe:2.3:a:opencascade:open_cascade_technology:8.0.0:beta1:*:*:*:*:*:*
cpe:2.3:a:opencascade:open_cascade_technology:8.0.0:rc1:*:*:*:*:*:*
cpe:2.3:a:opencascade:open_cascade_technology:8.0.0:rc2:*:*:*:*:*:*
cpe:2.3:a:opencascade:open_cascade_technology:8.0.0:rc3:*:*:*:*:*:*
cpe:2.3:a:opencascade:open_cascade_technology:8.0.0:rc4:*:*:*:*:*:*
cpe:2.3:a:opencascade:open_cascade_technology:8.0.0:rc5:*:*:*:*:*:*

EPSS

Процентиль: 13%
0.00219
Низкий

7.5 High

CVSS3

5.5 Medium

CVSS3

Дефекты

CWE-476
CWE-125

Связанные уязвимости

CVSS3: 7.5
ubuntu
4 месяца назад

An issue was discovered in VrmlData_IndexedFaceSet::TShape in the VRML V2.0 parser in Open CASCADE Technology (OCCT) V8_0_0_rc5 allows attackers to cause a denial of service via a crafted VRML file. The issue occurs because malformed VRML input can trigger dereference of a corrupt or unvalidated pointer during shape construction in libTKDEVRML.so.

CVSS3: 7.5
debian
4 месяца назад

An issue was discovered in VrmlData_IndexedFaceSet::TShape in the VRML ...

CVSS3: 7.5
github
4 месяца назад

An issue was discovered in VrmlData_IndexedFaceSet::TShape in the VRML V2.0 parser in Open CASCADE Technology (OCCT) V8_0_0_rc5 allows attackers to cause a denial of service via a crafted VRML file. The issue occurs because malformed VRML input can trigger dereference of a corrupt or unvalidated pointer during shape construction in libTKDEVRML.so.

EPSS

Процентиль: 13%
0.00219
Низкий

7.5 High

CVSS3

5.5 Medium

CVSS3

Дефекты

CWE-476
CWE-125