Description
Multiple critical vulnerabilities have been found in Google SketchUp. Malicious users can exploit these vulnerabilities to execute arbitrary code. Below is a complete list of vulnerabilities
- A buffer overflow can be exploited remotely via a specially designed BMP file;
- The out of bounds write can be exploited remotely via a specially designed palette.
Original advisories
Exploitation
Public exploits exist for this vulnerability.
Related products
CVE list
- CVE-2013-3664 critical
- CVE-2013-7388 critical
Read more
Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com
Found an inaccuracy in the description of this vulnerability? Let us know!