Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2010-0280

Опубликовано: 15 янв. 2010
Источник: debian

Описание

Array index error in Jan Eric Kyprianidis lib3ds 1.x, as used in Google SketchUp 7.x before 7.1 M2, allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via crafted structures in a 3DS file, probably related to mesh.c.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
lib3dsfixed1.3.0-5package
lib3dsno-dsalennypackage
lib3dsno-dsaetchpackage
openscenegraphfixed2.8.0-1package
openscenegraphfixed2.4.0-1.1+lenny1lennypackage

Примечания

  • openscenegraph embeds acopy of lib3ds

  • http://www.coresecurity.com/content/google-sketchup-vulnerability

  • issue was published saying it affects google sketchup,

  • but the vulnerable code is in lib3ds

  • http://code.google.com/p/lib3ds/issues/detail?id=9

Связанные уязвимости

ubuntu
около 16 лет назад

Array index error in Jan Eric Kyprianidis lib3ds 1.x, as used in Google SketchUp 7.x before 7.1 M2, allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via crafted structures in a 3DS file, probably related to mesh.c.

nvd
около 16 лет назад

Array index error in Jan Eric Kyprianidis lib3ds 1.x, as used in Google SketchUp 7.x before 7.1 M2, allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via crafted structures in a 3DS file, probably related to mesh.c.

github
почти 4 года назад

Array index error in Jan Eric Kyprianidis lib3ds 1.x, as used in Google SketchUp 7.x before 7.1 M2, allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via crafted structures in a 3DS file, probably related to mesh.c.