First published: Wed Jul 05 2017(Updated: )
XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a crafted .rle file, related to a "User Mode Write AV starting at xnview+0x000000000037a8aa."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
XnView | =2.40 | |
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-10747 has a critical severity level as it allows attackers to execute arbitrary code.
To fix CVE-2017-10747, update XnView Classic to a version that is not affected by this vulnerability.
XnView Classic version 2.40 is specifically affected by CVE-2017-10747.
CVE-2017-10747 can be exploited via a crafted .rle file, leading to potential arbitrary code execution.
The impact of CVE-2017-10747 includes the possibility of arbitrary code execution or denial of service on affected systems.