Unrated severityNVD Advisory· Published Dec 22, 2005· Updated Apr 16, 2026
CVE-2005-4470
CVE-2005-4470
Description
Heap-based buffer overflow in the get_bhead function in readfile.c in Blender BlenLoader 2.0 through 2.40pre allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a .blend file with a negative bhead.len value, which causes less memory to be allocated than expected, possibly due to an integer overflow.
Affected products
20cpe:2.3:a:blender:blenloader:*:*:*:*:*:*:*:*+ 19 more
- cpe:2.3:a:blender:blenloader:*:*:*:*:*:*:*:*range: <=2.40_pre
- cpe:2.3:a:blender:blenloader:2.0:*:*:*:*:*:*:*
- cpe:2.3:a:blender:blenloader:2.04:*:*:*:*:*:*:*
- cpe:2.3:a:blender:blenloader:2.25:*:*:*:*:*:*:*
- cpe:2.3:a:blender:blenloader:2.26:*:*:*:*:*:*:*
- cpe:2.3:a:blender:blenloader:2.27:*:*:*:*:*:*:*
- cpe:2.3:a:blender:blenloader:2.28:*:*:*:*:*:*:*
- cpe:2.3:a:blender:blenloader:2.28a:*:*:*:*:*:*:*
- cpe:2.3:a:blender:blenloader:2.28c:*:*:*:*:*:*:*
- cpe:2.3:a:blender:blenloader:2.30:*:*:*:*:*:*:*
- cpe:2.3:a:blender:blenloader:2.31a:*:*:*:*:*:*:*
- cpe:2.3:a:blender:blenloader:2.32:*:*:*:*:*:*:*
- cpe:2.3:a:blender:blenloader:2.33:*:*:*:*:*:*:*
- cpe:2.3:a:blender:blenloader:2.33a:*:*:*:*:*:*:*
- cpe:2.3:a:blender:blenloader:2.34:*:*:*:*:*:*:*
- cpe:2.3:a:blender:blenloader:2.35:*:*:*:*:*:*:*
- cpe:2.3:a:blender:blenloader:2.37:*:*:*:*:*:*:*
- cpe:2.3:a:blender:blenloader:2.37a:*:*:*:*:*:*:*
- cpe:2.3:a:blender:blenloader:2.39:*:*:*:*:*:*:*
- cpe:2.3:a:blender:blenloader:2.40_alpha:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
11- www.overflow.pl/adv/blenderinteger.txtnvdExploit
- www.securityfocus.com/bid/15981nvdExploit
- secunia.com/advisories/18176nvdVendor Advisory
- secunia.com/advisories/18178nvd
- secunia.com/advisories/18452nvd
- secunia.com/advisories/19754nvd
- www.debian.org/security/2006/dsa-1039nvd
- www.gentoo.org/security/en/glsa/glsa-200601-08.xmlnvd
- www.securityfocus.com/archive/1/419907/100/0/threadednvd
- www.vupen.com/english/advisories/2005/3032nvd
- usn.ubuntu.com/238-2/nvd
News mentions
0No linked articles in our index yet.