First published: Mon Sep 11 2017(Updated: )
XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .jb2 file, related to "Data from Faulting Address controls Branch Selection starting at jbig2dec+0x000000000000571d."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
XnView | =2.40 | |
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-14280 has been classified as a denial of service vulnerability, which can lead to application crashes.
To mitigate CVE-2017-14280, upgrade XnView Classic to the latest version or apply the recommended software patches.
CVE-2017-14280 can potentially allow attackers to cause a denial of service through specially crafted .jb2 files.
CVE-2017-14280 specifically affects XnView Classic version 2.40.
No, the Windows operating system itself is not vulnerable; the risk lies within the XnView Classic application.