


Perceptive Security
SOC/SIEM Consultancy

An issue was discovered in VrmlData_IndexedFaceSet::TShape in the VRML V2.0 parser in Open CASCADE Technology (OCCT) V8_0_0_rc5 allows attackers to cause a deni…
Published:
30 April 2026 at 22:00:00
Alert date:
1 May 2026 at 18:06:04
Source:
nvd.nist.gov
Enterprise Applications
A denial of service vulnerability was discovered in Open CASCADE Technology (OCCT) version 8.0.0 RC5 in the VRML V2.0 parser component VrmlData_IndexedFaceSet::TShape. The vulnerability allows attackers to cause a denial of service by providing a crafted VRML file that triggers dereferencing of a corrupt or unvalidated pointer during shape construction in the libTKDEVRML.so library. This occurs due to improper validation of malformed VRML input during the parsing process.
Technical details
Mitigation steps:
Affected products:
Open CASCADE Technology (OCCT)
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-42478
https://gist.github.com/sgInnora/dfba083d04906283e9c92aea78e2d94a
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
