Google SketchUp < 7.1 M2 Remote Code Execution Vulnerabilities
High Nessus Plugin ID 56980
The remote host has a 3-D modeling application that is affected by two remote code execution vulnerabilities.
The version of Google SketchUp installed on the remote host is earlier than 7.1 Maintenance Release 2. Such versions fail to perform adequate checks when processing data contained in '.SKP' and '.3DS' files, therefore allowing memory to become corrupted. An attacker can exploit this issue by providing a specially crafted '.SKP' or '.3DS' file to the victim that can execute arbitrary code in the context of the application.
Upgrade to Google SketchUp 7.1 Maintenance Release 2 or later.