First published: Mon Sep 11 2017(Updated: )
XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .jb2 file, related to "Data from Faulting Address controls Branch Selection starting at ntdll_77400000!RtlGetCurrentDirectory_U+0x000000000000016c."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
XnView | =2.40 | |
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-14284 is classified as a denial of service vulnerability.
To fix CVE-2017-14284, update to a later version of XnView Classic that resolves this vulnerability.
CVE-2017-14284 specifically affects XnView Classic version 2.40 running on Windows.
The impact of CVE-2017-14284 can result in a denial of service or potentially unspecified effects when processing crafted .jb2 files.
To identify exploitation of CVE-2017-14284, monitor system logs for unusual application crashes or resource exhaustion events linked to XnView Classic.