CVE-2017-15802
https://notcve.org/view.php?id=CVE-2017-15802
XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .dll file that is mishandled during an attempt to render the DLL icon, related to "Data from Faulting Address controls Branch Selection starting at ntdll_77310000!LdrpResCompareResourceNames+0x0000000000000087." XnView Classic para Windows en su versión 2.43 permite que los atacantes provoquen una denegación de servicio o, posiblemente, otro impacto sin especificar mediante un archivo .dll manipulado que se gestiona de manera incorrecta durante un intento de representar el icono DLL. Esta vulnerabilidad está relacionada con "Data from Faulting Address controls Branch Selection starting at ntdll_77310000!LdrpResCompareResourceNames+0x0000000000000087". • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-15802 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-15777
https://notcve.org/view.php?id=CVE-2017-15777
XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to a "User Mode Write AV near NULL starting at CADImage+0x0000000000288750." XnView Classic para Windows en su versión 2.43 permite que los atacantes ejecuten código arbitrario o que provoquen una denegación de servicio mediante un archivo .dwg manipulado, relacionado con "User Mode Write AV near NULL starting at CADImage+0x0000000000288750". • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-15777 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-15789
https://notcve.org/view.php?id=CVE-2017-15789
XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to a "User Mode Write AV starting at CADImage+0x00000000000048e7." XnView Classic para Windows en su versión 2.43 permite que los atacantes ejecuten código arbitrario o que provoquen una denegación de servicio mediante un archivo .dwg manipulado, relacionado con "User Mode Write AV starting at CADImage+0x00000000000048e7". • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-15789 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-15784
https://notcve.org/view.php?id=CVE-2017-15784
XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to an "Illegal Instruction Violation starting at xnview+0x0000000000370074." XnView Classic para Windows en su versión 2.43 permite que los atacantes ejecuten código arbitrario o que provoquen una denegación de servicio mediante un archivo .dwg manipulado, relacionado con "Illegal Instruction Violation starting at xnview+0x0000000000370074". • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-15784 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-15782
https://notcve.org/view.php?id=CVE-2017-15782
XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to a "User Mode Write AV starting at CADImage+0x00000000000032eb." XnView Classic para Windows en su versión 2.43 permite que los atacantes ejecuten código arbitrario o que provoquen una denegación de servicio mediante un archivo .dwg manipulado, relacionado con "User Mode Write AV starting at CADImage+0x00000000000032eb". • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-15782 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •