First published: Mon Sep 11 2017(Updated: )
XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .jb2 file, related to "Data from Faulting Address is used as one or more arguments in a subsequent Function Call starting at jbig2dec+0x00000000000090f1."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
XnView | =2.40 | |
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-14281 has not been assigned a specific severity score but can lead to a denial of service.
To fix CVE-2017-14281, upgrade XnView Classic to the latest version beyond 2.40.
CVE-2017-14281 affects XnView Classic version 2.40 on Windows.
CVE-2017-14281 primarily leads to denial of service but the potential for unspecified impacts exists.
CVE-2017-14281 can be exploited using crafted .jb2 files.