CVE-2012-1051: Buffer Overflow
Published Feb 13, 2012
·Updated
Heap-based buffer overflow in Xjp2.dll in the JPEG2000 plug-in in XnView 1.98.5 allows remote attackers to execute arbitrary code via a JPEG2000 (JP2) file with a crafted Quantization Default (QCD) marker segment.
Affected Software
1 affected component
XnView xnview=1.98.5
Event History
Feb 13, 2012
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-1051?
CVE-2012-1051 is classified as critical due to its potential to allow remote code execution.
2
How do I fix CVE-2012-1051?
To fix CVE-2012-1051, users should update to a patched version of the XnView software, specifically higher than version 1.98.5.
3
What software is affected by CVE-2012-1051?
CVE-2012-1051 specifically affects XnView version 1.98.5.
4
What type of vulnerability is CVE-2012-1051?
CVE-2012-1051 is a heap-based buffer overflow vulnerability.
5
How can attackers exploit CVE-2012-1051?
Attackers can exploit CVE-2012-1051 by sending a specially crafted JPEG2000 file to the victim to trigger the overflow.