CVE-2007-1253

Publication date 3 March 2007

Last updated 17 July 2025


Ubuntu priority

Description

Eval injection vulnerability in the (a) kmz_ImportWithMesh.py Script for Blender 0.1.9h, as used in (b) Blender before 2.43, allows user-assisted remote attackers to execute arbitrary Python code by importing a crafted (1) KML or (2) KMZ file.

Status

Package Ubuntu Release Status
blender 7.04 feisty
Fixed 2.43-0ubuntu3
6.10 edgy
Fixed 2.42a-1ubuntu1.1
6.06 LTS dapper
Not affected