An improper array index validation vulnerability exists in the stlfixnormal_directions functionality of ADMesh Master Commit 767a105 and v0.98.4. A specially-crafted stl file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.
{
"nvd_published_at": "2023-04-03T16:15:00Z",
"cwe_ids": [
"CWE-118",
"CWE-129"
],
"github_reviewed_at": "2024-11-22T20:14:37Z",
"severity": "HIGH",
"github_reviewed": true
}