CVE-2022-0545
An integer overflow in the processing of loaded 2D images leads to a write-what-where vulnerability and an out-of-bounds read vulnerability, allowing an attacker to leak sensitive information or achieve code execution in the context of the Blender…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (1.16%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
An integer overflow in the processing of loaded 2D images leads to a write-what-where vulnerability and an out-of-bounds read vulnerability, allowing an attacker to leak sensitive information or achieve code execution in the context of the Blender process when a specially crafted image file is loaded. This flaw affects Blender versions prior to 2.83.19, 2.93.8 and 3.1.
- CVSS 3.1
- 7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- EPSS
- 1.16% probability · 65th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-190
- Affected
- blender/blender · debian/debian linux
- Source
- patrick@puiterwijk.org
References
- https://developer.blender.org/T94629Issue Tracking, Patch, Vendor Advisory
- https://lists.debian.org/debian-lts-announce/2022/06/msg00021.htmlMailing List, Third Party Advisory
- https://www.debian.org/security/2022/dsa-5176Third Party Advisory
- https://developer.blender.org/T94629Issue Tracking, Patch, Vendor Advisory
- https://lists.debian.org/debian-lts-announce/2022/06/msg00021.htmlMailing List, Third Party Advisory
- https://www.debian.org/security/2022/dsa-5176Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.