CVE-2017-14270: Buffer Overflow
Published Sep 11, 2017
·Updated
XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to a "User Mode Write AV starting at ntdll77400000!RtlFillMemoryUlong+0x0000000000000010."
Affected Software
2 affected components
XnView xnview=2.40
Microsoft Windows
Event History
Sep 11, 2017
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-14270?
CVE-2017-14270 has a high severity rating due to its potential to allow arbitrary code execution.
2
How do I fix CVE-2017-14270?
To fix CVE-2017-14270, you should update XnView Classic to the latest version that mitigates this vulnerability.
3
What are the potential impacts of CVE-2017-14270?
CVE-2017-14270 can lead to arbitrary code execution or cause a denial of service in affected systems.
4
Which versions of XnView are affected by CVE-2017-14270?
CVE-2017-14270 affects XnView Classic version 2.40.
5
Can CVE-2017-14270 be exploited remotely?
Yes, CVE-2017-14270 can be exploited remotely by malicious actors through crafted .jb2 files.