CVE-2013-3663

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
13/06/2014
Last modified:
12/04/2025

Description

Heap-based buffer overflow in paintlib, as used in Trimble SketchUp (formerly Google SketchUp) before 8 Maintenance 3, allows remote attackers to execute arbitrary code via a crafted RLE8 compressed BMP.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:google:sketchup:*:maintenance_1:*:*:*:*:*:* 8.0 (including)
cpe:2.3:a:google:sketchup:6.0:maintenance_6:*:*:*:*:*:*
cpe:2.3:a:google:sketchup:7.0:maintenance_1:*:*:*:*:*:*
cpe:2.3:a:google:sketchup:7.1:*:*:*:*:*:*:*
cpe:2.3:a:google:sketchup:7.1:maintenance_1:*:*:*:*:*:*
cpe:2.3:a:google:sketchup:7.1:maintenance_2:*:*:*:*:*:*
cpe:2.3:a:google:sketchup:8.0:*:*:*:*:*:*:*