First published: Sun Oct 22 2017(Updated: )
XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .dwg file, related to "Data from Faulting Address may be used as a return value starting at CADImage+0x0000000000285ec1."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
XnView | =2.43 | |
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-15776 has a severity level associated with a denial of service, potentially impacting system availability.
To mitigate CVE-2017-15776, it is recommended to update XnView Classic to the latest version beyond 2.43 and avoid opening untrusted .dwg files.
CVE-2017-15776 primarily affects XnView Classic version 2.43 running on Microsoft Windows.
CVE-2017-15776 can cause a denial of service and potentially allow unspecified other impacts when a crafted .dwg file is processed.
As of now, there is no public exploit available specifically documented for CVE-2017-15776.