CVE-2005-4470
EPSS 6.0%blender - heap-based buffer overflow
Published: 12/22/2005Modified: 4/28/2026
Description
Heap-based buffer overflow in the get_bhead function in readfile.c in Blender BlenLoader 2.0 through 2.40pre allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a .blend file with a negative bhead.len value, which causes less memory to be allocated than expected, possibly due to an integer overflow.
Affected packages (2)
- Debian/blenderfrom 0, < 2.40-1
- Debian/blenderfrom 0, < 2.37a-1.1etch1