CVE-2017-15786: Buffer Overflow
Published Oct 22, 2017
·Updated
XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .dwg file, related to a "Read Access Violation starting at CADImage+0x00000000001a78db."
Affected Software
2 affected components
XnView xnview=2.43
Microsoft Windows
Event History
Oct 22, 2017
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-15786?
The severity of CVE-2017-15786 is categorized as a denial of service vulnerability.
2
How do I fix CVE-2017-15786?
To fix CVE-2017-15786, upgrade XnView Classic to a version later than 2.43.
3
Which versions of XnView are affected by CVE-2017-15786?
CVE-2017-15786 affects XnView Classic version 2.43.
4
What is the impact of CVE-2017-15786?
CVE-2017-15786 can lead to denial of service or possibly other undefined impacts when handling crafted .dwg files.
5
Is Microsoft Windows affected by CVE-2017-15786?
Microsoft Windows itself is not vulnerable, but the vulnerability exists within XnView Classic.