// For flags

CVE-2010-0280

 

Severity Score

9.3
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

2
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Array index error in Jan Eric Kyprianidis lib3ds 1.x, as used in Google SketchUp 7.x before 7.1 M2, allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via crafted structures in a 3DS file, probably related to mesh.c.

Error de indice de array en Jan Eric Kyprianidis lib3ds v1.x, como el utilizado en Google SketchUp v7.x anterior a 7.1 M2, permite a atacantes remotos provocar una denegación de servicio (corrupción de memoria) o puede que ejecutar código de su elección a través de estructuras manipuladas en un fichero 3DS. Puede que esté relacionado con mesh.c.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2010-01-12 CVE Reserved
  • 2010-01-14 CVE Published
  • 2024-04-19 EPSS Updated
  • 2024-08-07 CVE Updated
  • 2024-08-07 First Exploit
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-189: Numeric Errors
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Jan Eric Krprianidis
Search vendor "Jan Eric Krprianidis"
Lib3ds
Search vendor "Jan Eric Krprianidis" for product "Lib3ds"
1.0
Search vendor "Jan Eric Krprianidis" for product "Lib3ds" and version "1.0"
-
Affected
in Google
Search vendor "Google"
Google Sketchup
Search vendor "Google" for product "Google Sketchup"
7.0
Search vendor "Google" for product "Google Sketchup" and version "7.0"
-
Affected
Jan Eric Krprianidis
Search vendor "Jan Eric Krprianidis"
Lib3ds
Search vendor "Jan Eric Krprianidis" for product "Lib3ds"
1.0
Search vendor "Jan Eric Krprianidis" for product "Lib3ds" and version "1.0"
-
Affected
in Google
Search vendor "Google"
Google Sketchup
Search vendor "Google" for product "Google Sketchup"
7.0.10247
Search vendor "Google" for product "Google Sketchup" and version "7.0.10247"
-
Affected
Jan Eric Krprianidis
Search vendor "Jan Eric Krprianidis"
Lib3ds
Search vendor "Jan Eric Krprianidis" for product "Lib3ds"
1.0
Search vendor "Jan Eric Krprianidis" for product "Lib3ds" and version "1.0"
-
Affected
in Google
Search vendor "Google"
Google Sketchup
Search vendor "Google" for product "Google Sketchup"
7.1.4871
Search vendor "Google" for product "Google Sketchup" and version "7.1.4871"
-
Affected
Jan Eric Krprianidis
Search vendor "Jan Eric Krprianidis"
Lib3ds
Search vendor "Jan Eric Krprianidis" for product "Lib3ds"
1.0
Search vendor "Jan Eric Krprianidis" for product "Lib3ds" and version "1.0"
-
Affected
in Google
Search vendor "Google"
Google Sketchup
Search vendor "Google" for product "Google Sketchup"
7.1.6087
Search vendor "Google" for product "Google Sketchup" and version "7.1.6087"
-
Affected