CVE-2017-15775: Buffer Overflow
Published Oct 22, 2017
·Updated
XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .dwg file, related to "Data from Faulting Address controls Branch Selection starting at CADImage+0x0000000000259aa4."
Affected Software
2 affected components
XnView xnview=2.43
Microsoft Windows
Event History
Oct 22, 2017
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-15775?
CVE-2017-15775 is classified as a denial of service vulnerability.
2
How does CVE-2017-15775 affect XnView Classic?
CVE-2017-15775 allows attackers to cause a denial of service via a crafted .dwg file.
3
What version of XnView Classic is affected by CVE-2017-15775?
Version 2.43 of XnView Classic is affected by CVE-2017-15775.
4
How can I protect against CVE-2017-15775?
To protect against CVE-2017-15775, avoid opening untrusted .dwg files with XnView Classic version 2.43.
5
Is there a patch available for CVE-2017-15775?
There is no specific patch available for CVE-2017-15775; updating or using alternative software is recommended.