Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2010-0280

Опубликовано: 15 янв. 2010
Источник: debian
EPSS Низкий

Описание

Array index error in Jan Eric Kyprianidis lib3ds 1.x, as used in Google SketchUp 7.x before 7.1 M2, allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via crafted structures in a 3DS file, probably related to mesh.c.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
lib3dsfixed1.3.0-5package
lib3dsno-dsalennypackage
lib3dsno-dsaetchpackage
openscenegraphfixed2.8.0-1package
openscenegraphfixed2.4.0-1.1+lenny1lennypackage

Примечания

  • openscenegraph embeds acopy of lib3ds

  • http://www.coresecurity.com/content/google-sketchup-vulnerability

  • issue was published saying it affects google sketchup,

  • but the vulnerable code is in lib3ds

  • http://code.google.com/p/lib3ds/issues/detail?id=9

EPSS

Процентиль: 88%
0.03892
Низкий

Связанные уязвимости

ubuntu
почти 16 лет назад

Array index error in Jan Eric Kyprianidis lib3ds 1.x, as used in Google SketchUp 7.x before 7.1 M2, allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via crafted structures in a 3DS file, probably related to mesh.c.

nvd
почти 16 лет назад

Array index error in Jan Eric Kyprianidis lib3ds 1.x, as used in Google SketchUp 7.x before 7.1 M2, allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via crafted structures in a 3DS file, probably related to mesh.c.

github
больше 3 лет назад

Array index error in Jan Eric Kyprianidis lib3ds 1.x, as used in Google SketchUp 7.x before 7.1 M2, allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via crafted structures in a 3DS file, probably related to mesh.c.

EPSS

Процентиль: 88%
0.03892
Низкий