CVE-2017-15772: Buffer Overflow
Published Oct 22, 2017
·Updated
XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .dwg file, related to "Data from Faulting Address may be used as a return value starting at CADImage+0x0000000000285e9d."
Affected Software
2 affected components
XnView xnview=2.43
Microsoft Windows
Event History
Oct 22, 2017
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-15772?
CVE-2017-15772 has been classified with a severity level that indicates it could lead to denial of service.
2
How do I fix CVE-2017-15772?
To mitigate CVE-2017-15772, upgrade XnView Classic to version 2.44 or later.
3
What exploitation impact does CVE-2017-15772 have?
Exploitation of CVE-2017-15772 may result in a denial of service, potentially affecting system availability.
4
Which version of XnView is affected by CVE-2017-15772?
CVE-2017-15772 affects XnView Classic version 2.43.
5
Can CVE-2017-15772 be exploited remotely?
CVE-2017-15772 may be exploited by an attacker through crafted .dwg files, possibly leading to remote denial of service.