CVE-2026-2653Disclosure(admesh_project / admesh)

LOWCVSS 7.8 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A security flaw has been discovered in admesh up to 0.98.5. This issue affects the function stl_check_normal_vector of the file src/normals.c. Performing a manipulation results in heap-based buffer overflow. The attack must be initiated from a local position. The exploit has been released to the public and may be used for attacks. It looks like this product is not really maintained anymore.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-122

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • admesh

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • 2 total mentions across 1 day

Affected systems

Products
admesh

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-02-18: 2Technical Details · 2026-02-18: 202-18
Signal classification1 categories
Disclosure
2100.0%
Referenced assets2 URLs
Full discourse2 posts
  • CVE@CVEnew
    Disclosure

    CVE-2026-2653 A security flaw has been discovered in admesh up to 0.98.5. This issue affects the function stl_check_normal_vector of the file src/normals.c. Performing a manipulation… https://www.cve.org/CVERecord?id=CVE-2026-2653

    Post summary

    CVE-2026-2653 is a newly disclosed vulnerability in admesh (up to 0.98.5) affecting the stl_check_normal_vector function; no PoC, exploit, patch, or active exploitation details are mentioned.

    00010188
    56.4K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-2653 Local Heap Buffer Overflow in Admesh up to 0.98.5 via Malicious Input https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-2653

    Post summary

    The post announces CVE‑2026‑2653, a local heap buffer overflow in Admesh 0.98.5 triggered by malicious input, without providing PoC, exploit code, or patch details.

    0000029
    4.0K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appadmesh_projectadmesh---

Explore more