CVE-2017-14281: Buffer Overflow
Published Sep 11, 2017
·Updated
XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .jb2 file, related to "Data from Faulting Address is used as one or more arguments in a subsequent Function Call starting at jbig2dec+0x00000000000090f1."
Affected Software
2 affected components
XnView xnview=2.40
Microsoft Windows
Event History
Sep 11, 2017
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-14281?
CVE-2017-14281 has not been assigned a specific severity score but can lead to a denial of service.
2
How do I fix CVE-2017-14281?
To fix CVE-2017-14281, upgrade XnView Classic to the latest version beyond 2.40.
3
What software is affected by CVE-2017-14281?
CVE-2017-14281 affects XnView Classic version 2.40 on Windows.
4
Can CVE-2017-14281 cause data loss?
CVE-2017-14281 primarily leads to denial of service but the potential for unspecified impacts exists.
5
What types of files can exploit CVE-2017-14281?
CVE-2017-14281 can be exploited using crafted .jb2 files.