CVE-2017-14273: Buffer Overflow
Published Sep 11, 2017
·Updated
XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to a "User Mode Write AV starting at ntdll77400000!RtlInterlockedPopEntrySList+0x00000000000003b0."
Affected Software
2 affected components
XnView xnview=2.40
Microsoft Windows
Event History
Sep 11, 2017
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-14273?
CVE-2017-14273 is considered critical as it allows arbitrary code execution and potential denial of service.
2
How do I fix CVE-2017-14273?
To fix CVE-2017-14273, update XnView Classic to version 2.41 or later, where the vulnerability is addressed.
3
Which versions of XnView Classic are affected by CVE-2017-14273?
XnView Classic version 2.40 is affected by CVE-2017-14273.
4
What types of attacks can be executed through CVE-2017-14273?
CVE-2017-14273 can be exploited to execute arbitrary code or cause a denial of service through a specially crafted .jb2 file.
5
Is CVE-2017-14273 specific to any operating system?
CVE-2017-14273 affects XnView Classic on Microsoft Windows operating systems.