CVE-2005-4470
EPSS 6.0%blender - heap-based buffer overflow
發布日:2005/12/22修改日:2026/4/28
也稱為:DEBIAN-CVE-2005-4470
描述
Heap-based buffer overflow in the get_bhead function in readfile.c in Blender BlenLoader 2.0 through 2.40pre allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a .blend file with a negative bhead.len value, which causes less memory to be allocated than expected, possibly due to an integer overflow.
受影響套件(2)
- Debian/blenderfrom 0, < 2.40-1
- Debian/blenderfrom 0, < 2.37a-1.1etch1