CVE-2021-28835: Buffer Overflow
Published Aug 11, 2023
·Updated
Buffer Overflow vulnerability in XNView before 2.50, allows local attackers to execute arbitrary code via crafted GEM bitmap file.
Affected Software
1 affected component
XnView xnview<2.50
Event History
Aug 11, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2021-28835?
CVE-2021-28835 is a buffer overflow vulnerability in XNView before version 2.50.
2
How does CVE-2021-28835 affect XNView?
CVE-2021-28835 allows local attackers to execute arbitrary code in XNView by exploiting a buffer overflow vulnerability in GEM bitmap files.
3
What is the severity of CVE-2021-28835?
CVE-2021-28835 has a severity score of 7.8, which is considered high.
4
How can I fix CVE-2021-28835?
To fix CVE-2021-28835, you should update XNView to version 2.50 or higher.
5
Where can I find more information about CVE-2021-28835?
You can find more information about CVE-2021-28835 at the following references: [Link 1](https://newsgroup.xnview.com/viewtopic.php?f=35&t=44679) and [Link 2](https://www.xnview.com/en/xnview/#changelog).