CVE-2017-15779: Buffer Overflow
Published Oct 22, 2017
·Updated
XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to "Data from Faulting Address controls subsequent Write Address starting at CADImage+0x00000000000034b0."
Affected Software
2 affected components
XnView xnview=2.43
Microsoft Windows
Event History
Oct 22, 2017
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-15779?
CVE-2017-15779 has a critical severity level as it allows for arbitrary code execution.
2
How do I fix CVE-2017-15779?
To fix CVE-2017-15779, upgrade XnView Classic to version 2.43 or later.
3
What type of attacks can exploit CVE-2017-15779?
CVE-2017-15779 can be exploited to execute arbitrary code or cause a denial of service.
4
What file type is associated with CVE-2017-15779?
CVE-2017-15779 is associated with crafted .dwg files.
5
Which version of XnView is affected by CVE-2017-15779?
XnView Classic version 2.43 is affected by CVE-2017-15779.