Описание
A flaw was found in Blender 3.3.0. An interger overflow in source/blender/blendthumb/src/blendthumb_extract.cc may lead to program crash or memory corruption.
Ссылки
- ExploitPatchVendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- ExploitPatchVendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:blender:blender:3.3.0:alpha:*:*:*:*:*:*
EPSS
Процентиль: 73%
0.00779
Низкий
7.5 High
CVSS3
Дефекты
CWE-190
CWE-125
Связанные уязвимости
CVSS3: 7.5
ubuntu
больше 3 лет назад
A flaw was found in Blender 3.3.0. An interger overflow in source/blender/blendthumb/src/blendthumb_extract.cc may lead to program crash or memory corruption.
CVSS3: 7.5
debian
больше 3 лет назад
A flaw was found in Blender 3.3.0. An interger overflow in source/blen ...
CVSS3: 7.5
github
больше 3 лет назад
A loaded (and valid) image can be crafted such that an out-of-bounds read or write occurs when the image converted to thumbnail that is flipped vertically. Crash occured in source/blender/blendthumb/src/blendthumb_extract.cc
EPSS
Процентиль: 73%
0.00779
Низкий
7.5 High
CVSS3
Дефекты
CWE-190
CWE-125