Blender 'BPY_interface.c' Remote Command Execution Vulnerability

Blender is prone to a remote command-execution vulnerability.

An attacker could exploit this issue by enticing an unsuspecting victim to execute Blender in a directory containing a malicious Python file. A successful exploit will allow arbitrary Python commands to run within the privileges of the currently logged-in user.

Blender 2.48a is vulnerable; other versions may also be affected.


 

Privacy Statement
Copyright 2010, SecurityFocus