CVE-2010-0280

Severity CVSS v4.0:
Pending analysis
Type:
CWE-189 Numeric Errors
Publication date:
15/01/2010
Last modified:
09/04/2025

Description

Array index error in Jan Eric Kyprianidis lib3ds 1.x, as used in Google SketchUp 7.x before 7.1 M2, allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via crafted structures in a 3DS file, probably related to mesh.c.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:jan_eric_krprianidis:lib3ds:1.0:*:*:*:*:*:*:*
cpe:2.3:a:google:google_sketchup:7.0:*:*:*:*:*:*:*
cpe:2.3:a:google:google_sketchup:7.0.10247:*:*:*:*:*:*:*
cpe:2.3:a:google:google_sketchup:7.1.4871:*:*:*:*:*:*:*
cpe:2.3:a:google:google_sketchup:7.1.6087:*:*:*:*:*:*:*