Vulnerability Description
A flaw was found in Blender 3.3.0. A null pointer dereference exists in source/blender/gpu/opengl/gl_backend.cc that may lead to loss of confidentiality and integrity.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Blender | Blender | 3.3.0 |
Related Weaknesses (CWE)
References
- https://developer.blender.org/D15463PatchVendor Advisory
- https://developer.blender.org/T99706ExploitPatchVendor Advisory
- https://developer.blender.org/rB00dc7477022acdd969e4d709a235c0be819efa6cPatchVendor Advisory
- https://developer.blender.org/D15463PatchVendor Advisory
- https://developer.blender.org/T99706ExploitPatchVendor Advisory
- https://developer.blender.org/rB00dc7477022acdd969e4d709a235c0be819efa6cPatchVendor Advisory
FAQ
What is CVE-2022-2832?
CVE-2022-2832 is a vulnerability with a CVSS score of 7.5 (HIGH). A flaw was found in Blender 3.3.0. A null pointer dereference exists in source/blender/gpu/opengl/gl_backend.cc that may lead to loss of confidentiality and integrity.
How severe is CVE-2022-2832?
CVE-2022-2832 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-2832?
Check the references section above for vendor advisories and patch information. Affected products include: Blender Blender.