Heap-based buffer overflow in the get_bhead function in readfile.c in Blender BlenLoader 2.0 through 2.40pre allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a .blend file with a negative bhead.len value, which causes less memory to be allocated than expected, possibly due to an integer overflow.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-1039-1 | New blender packages fix several vulnerabilities |
EUVD |
EUVD-2005-4465 | Heap-based buffer overflow in the get_bhead function in readfile.c in Blender BlenLoader 2.0 through 2.40pre allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a .blend file with a negative bhead.len value, which causes less memory to be allocated than expected, possibly due to an integer overflow. |
Ubuntu USN |
USN-238-2 | Blender vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T23:46:05.537Z
Reserved: 2005-12-21T00:00:00
Link: CVE-2005-4470
No data.
Status : Deferred
Published: 2005-12-22T00:03:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2005-4470
No data.
OpenCVE Enrichment
No data.
Debian DSA
EUVD
Ubuntu USN