CVE-2017-10770: Buffer Overflow
Published Jul 5, 2017
·Updated
XnView Classic for Windows Version 2.40 might allow attackers to cause a denial of service or possibly have unspecified other impact via a crafted .rle file, related to "Data from Faulting Address controls Branch Selection starting at ntdll77df0000!RtlpCreateSplitBlock+0x000000000000053a."
Affected Software
2 affected components
XnView xnview=2.40
Microsoft Windows
Event History
Jul 5, 2017
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-10770?
CVE-2017-10770 has been categorized as a potential denial of service vulnerability.
2
How do I fix CVE-2017-10770?
To mitigate CVE-2017-10770, users should update XnView Classic to the latest version or avoid opening crafted .rle files.
3
What software is affected by CVE-2017-10770?
CVE-2017-10770 affects XnView Classic for Windows version 2.40.
4
Can CVE-2017-10770 lead to data loss?
While CVE-2017-10770 can cause a denial of service, it does not specifically mention potential data loss.
5
What types of attacks can exploit CVE-2017-10770?
CVE-2017-10770 can be exploited through crafted .rle files to cause denial of service.