PT-2008-2700 · Blender · Blender

Stefan Cornelius

·

Published

2008-04-21

·

Updated

2017-08-08

·

CVE-2008-1102

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Blender version 2.45
Description A stack-based buffer overflow issue exists in the imb loadhdr function, allowing user-assisted remote attackers to execute arbitrary code via a crafted .blend file containing a malicious Radiance RGBE image.
Recommendations For Blender version 2.45, consider avoiding the use of the imb loadhdr function until a patch is available, or refrain from opening untrusted .blend files to minimize the risk of exploitation.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-1102
DSA-1567-1

Affected Products

Blender