CVE-2025-15647

Summary

CDT before 1.4.5 contains an out-of-bounds read vulnerability in the opposedVertexInd() function when constraint edge intersections are computed in floating point and round outside adjacent triangles. Attackers can supply nearly-degenerate constraint edges through geometry data to trigger an out-of-bounds array access that crashes the calling process.

Affected Software

VendorProductVersion RangeStatus
artem-ogreCDT0 < 1.4.5affected

Weaknesses

  • CWE-125: Out-of-bounds Read

References