CVE-2010-0316: Integer Overflow
Published Jan 15, 2010
·Updated
Integer overflow in Google SketchUp before 7.1 M2 allows remote attackers to cause a denial of service (heap memory corruption) or possibly execute arbitrary code via a crafted SKP file.
Affected Software
4 affected components
Google Google SketchUp=7.0
Google Google SketchUp=7.0.10247
Google Google SketchUp=7.1.4871
Google Google SketchUp=7.1.6087
Event History
Jan 15, 2010
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-0316?
CVE-2010-0316 has a critical severity rating due to the potential for heap memory corruption and arbitrary code execution.
2
How do I fix CVE-2010-0316?
To fix CVE-2010-0316, update Google SketchUp to the latest version that is not affected by this vulnerability.
3
What impact does CVE-2010-0316 have on users?
CVE-2010-0316 allows remote attackers to cause a denial of service or potentially execute arbitrary code on affected systems.
4
Which versions of Google SketchUp are affected by CVE-2010-0316?
CVE-2010-0316 affects Google SketchUp versions 7.0 and 7.1 up to 7.1.6087.
5
Can CVE-2010-0316 be exploited without user interaction?
Yes, CVE-2010-0316 can be exploited remotely through a crafted SKP file, making user interaction unnecessary for the attack.