Blender
blender
36 CVEs • 2 products
Products (2)
Click to collapseToggle
Products (2)
Click to collapse
CVEs (36)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Blender Debian2Blender Debian LinuxNov 21, 2024 Apr 24, 2018 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 An exploitable integer overflow exists in the way that the Blender open-source 3d creation suite v2.78c converts curves to polygons. A specially crafted .blend file can cause an integer overflow resulting in a buffer ove...Show more |
2Blender Debian2Blender Debian LinuxNov 21, 2024 Apr 24, 2018 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 An exploitable integer overflow exists in the 'modifier_mdef_compact_influences' functionality of the Blender open-source 3d creation suite v2.78c. A specially crafted .blend file can cause an integer overflow resulting...Show more |
2Blender Debian2Blender Debian LinuxNov 21, 2024 Apr 24, 2018 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 An exploitable integer overflow exists in the 'multires_load_old_dm' functionality of the Blender open-source 3d creation suite v2.78c. A specially crafted .blend file can cause an integer overflow resulting in a buffer...Show more |
2Blender Debian2Blender Debian LinuxNov 21, 2024 Apr 24, 2018 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 An exploitable integer overflow exists in the upgrade of the legacy Mesh attribute 'tface' of the Blender open-source 3d creation suite v2.78c. A specially crafted .blend file can cause an integer overflow resulting in a...Show more |
2Blender Debian2Blender Debian LinuxNov 21, 2024 Apr 24, 2018 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 An exploitable integer overflow exists in the 'BKE_mesh_calc_normals_tessface' functionality of the Blender open-source 3d creation suite. A specially crafted .blend file can cause an integer overflow resulting in a buff...Show more |
2Blender Debian2Blender Debian LinuxNov 21, 2024 Apr 24, 2018 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 An exploitable integer overflow exists in the 'CustomData' Mesh loading functionality of the Blender open-source 3d creation suite. A .blend file with a specially crafted external data file can cause an integer overflow...Show more |
2Blender Debian2Blender Debian LinuxNov 21, 2024 Apr 24, 2018 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 An exploitable integer overflow exists in the upgrade of a legacy Mesh attribute of the Blender open-source 3d creation suite v2.78c. A specially crafted .blend file can cause an integer overflow resulting in a buffer ov...Show more |
The undo save quit routine in the kernel in Blender 2.5, 2.63a, and earlier allows local users to overwrite arbitrary files via a symlink attack on the quit.blend temporary file. NOTE: this issue might be a regression o...Show more |
Blender 2.34, 2.35a, 2.40, and 2.49b allows remote attackers to execute arbitrary code via a .blend file that contains Python statements in the onLoad action of a ScriptLink SDNA. |
Untrusted search path vulnerability in BPY_interface in Blender 2.46 allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to an erroneous setting of sys.pa...Show more |
Multiple unspecified vulnerabilities in Blender have unknown impact and attack vectors, related to "temporary file issues." |
Stack-based buffer overflow in the imb_loadhdr function in Blender 2.45 allows user-assisted remote attackers to execute arbitrary code via a .blend file that contains a crafted Radiance RGBE image. |
Eval injection vulnerability in the (a) kmz_ImportWithMesh.py Script for Blender 0.1.9h, as used in (b) Blender before 2.43, allows user-assisted remote attackers to execute arbitrary Python code by importing a crafted (...Show more |
Heap-based buffer overflow in the get_bhead function in readfile.c in Blender BlenLoader 2.0 through 2.40pre allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code vi...Show more |
2Blender Debian2Blender Debian LinuxApr 16, 2026 Oct 24, 2005 N/A· v4 7.3 HIGH· v3 7.5 HIGH· v2 Eval injection vulnerability in bvh_import.py in Blender 2.36 allows attackers to execute arbitrary Python code via a hierarchy element in a .bvh file, which is supplied to an eval function call. |
Buffer overflow in blenderplay in Blender Player 2.37a allows attackers to execute arbitrary code via a long command line argument. |