Out-of-Bounds Read Vulnerability in CDT Product
CVE-2025-15647

6.8MEDIUM

Key Information:

Vendor

Artem-ogre

Status
Vendor
CVE Published:
5 September 2026

What is CVE-2025-15647?

The CDT product, specifically versions prior to 1.4.5, is susceptible to an out-of-bounds read vulnerability within the opposedVertexInd() function. This issue arises during constraint edge intersections computation, where attackers can exploit nearly-degenerate constraint edges through crafted geometry data. This exploit may lead to an out-of-bounds array access, potentially resulting in a crash of the affected application. Mitigation can be found in the updated version 1.4.5, which addresses this vulnerability.

Affected Version(s)

CDT 0 < 1.4.5

References

CVSS V4

Score:
6.8
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Vlatko Kosturjak
.