First published: Mon Sep 11 2017(Updated: )
XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to a "User Mode Write AV near NULL starting at wow64!Wow64NotifyDebugger+0x000000000000001d."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
XnView | =2.40 | |
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-14275 has a high severity level due to its potential to execute arbitrary code or cause a denial of service.
To fix CVE-2017-14275, update XnView Classic to the latest version available beyond 2.40.
CVE-2017-14275 is triggered by a crafted .jb2 file.
CVE-2017-14275 specifically affects XnView Classic version 2.40, and other versions may not be susceptible.
The impact of CVE-2017-14275 includes the possibility of arbitrary code execution or denial of service on the affected system.