5.5
CVSSv3

CVE-2022-0544

Published: 24/02/2022 Updated: 07/11/2023
CVSS v2 Base Score: 2.6 | Impact Score: 2.9 | Exploitability Score: 4.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 231
Vector: AV:N/AC:H/Au:N/C:P/I:N/A:N

Vulnerability Summary

An integer underflow in the DDS loader of Blender leads to an out-of-bounds read, possibly allowing an malicious user to read sensitive data using a crafted DDS image file. This flaw affects Blender versions before 2.83.19, 2.93.8 and 3.1.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

blender blender

debian debian linux 9.0

debian debian linux 10.0

Vendor Advisories

Multiple vulnerabilities have been discovered in various image parsers in Blender, a 3D modeller/ renderer, which may result in denial of service or the execution of arbitrary code if a malformed file is opened For the oldstable distribution (buster), these problems have been fixed in version 279b+dfsg0-7+deb10u1 For the stable distribution (bu ...
Severity Unknown Remote Unknown Type Unknown Description AVG-2799 blender 17:301-6 17:310-1 Unknown Unknown developerblenderorg/T94661 ...