.:[ packet storm ]:.
                       
preserving full disclosure
preserving full disclosure

 ///  File Name:CORE-2009-0912.txt
Description:
Core Security Technologies Advisory - Blender embeds a python interpreter to extend its functionality. Blender .blend project files can be modified to execute arbitrary commands without user intervention by design. An attacker can take full control of the machine where Blender is installed by sending a specially crafted .blend file and enticing the user to open it.
Homepage:http://www.coresecurity.com/corelabs/
File Size:6678
Related CVE(s):CVE-2009-3850
Last Modified:Nov 5 14:23:53 2009
MD5 Checksum:3f35540862c9c7a87d3aca95c31184c7

 .:. Back