CVE Vulnerabilities

CVE-2010-0280

Published: Jan 15, 2010 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Array index error in Jan Eric Kyprianidis lib3ds 1.x, as used in Google SketchUp 7.x before 7.1 M2, allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via crafted structures in a 3DS file, probably related to mesh.c.

Affected Software

NameVendorStart VersionEnd Version
Lib3dsJan_eric_krprianidis1.0 (including)1.0 (including)
Lib3dsUbuntudapper*
Lib3dsUbuntuhardy*
Lib3dsUbuntuintrepid*
Lib3dsUbuntujaunty*
Lib3dsUbuntukarmic*
Lib3dsUbuntulucid*
Lib3dsUbuntumaverick*
Lib3dsUbuntunatty*
Lib3dsUbuntuoneiric*
Lib3dsUbuntuprecise*
Lib3dsUbuntuquantal*
Lib3dsUbunturaring*
Lib3dsUbuntusaucy*
Lib3dsUbuntuupstream*
Lib3dsUbuntuutopic*
Lib3dsUbuntuvivid*
Lib3dsUbuntuwily*
Lib3dsUbuntuyakkety*

References