Subject: CVS commit: pkgsrc/graphics/blender
From: Joerg Sonnenberger
Date: 2006-02-12 22:52:19
Message id: 20060212215219.13A522DA27@cvs.netbsd.org

Log Message:
Fix an Apple specific buffer overflow. To skip the first argument from
Finder, some copying to and from a local buffer in main is done, without
argument checking.

When a web browser or MUA is configured to start Blender automatically,
this might be exploitable to gain priviledges of the current user.

This is related to CVE-2005-3151.

Files:
RevisionActionfile
1.52modifypkgsrc/graphics/blender/Makefile
1.20modifypkgsrc/graphics/blender/distinfo
1.5addpkgsrc/graphics/blender/patches/patch-aa