|
|
Log in / Subscribe / Register

blender: arbitrary code execution

Package(s):blender CVE #(s):CVE-2008-4863
Created:November 12, 2008 Updated:January 14, 2010
Description:

From the Red Hat bugzilla entry:

Untrusted search path vulnerability in BPY_interface in Blender 2.46 allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to an erroneous setting of sys.path by the PySys_SetArgv function.

Alerts:
Gentoo 201001-07 blender 2010-01-13
Mandriva MDVSA-2009:038-1 blender 2009-12-08
Mandriva MDVSA-2009:038 blender 2008-02-16
Ubuntu USN-699-1 blender 2008-12-22
Fedora FEDORA-2008-10448 blender 2008-12-03
Fedora FEDORA-2008-9447 blender 2008-11-12
Fedora FEDORA-2008-9411 blender 2008-11-12

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds