CVE-2020-35628 - log back

CVE-2020-35628 edited at 04 Mar 2021 23:45:04
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Local
Type
- Unknown
+ Arbitrary code execution
Description
+ A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An out of bounds read vulnerability exists in Nef_S2/SNC_io_parser.h SNC_io_parser::read_sloop() slh->incident_sface. An attacker can provide malicious input to trigger this vulnerability.
References
+ https://talosintelligence.com/vulnerability_reports/TALOS-2020-1225
Notes
CVE-2020-35628 created at 04 Mar 2021 23:27:36