CVE-2017-14541
https://notcve.org/view.php?id=CVE-2017-14541
XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .svg file, related to "Data from Faulting Address controls Branch Selection starting at CADImage+0x000000000001f23e." XnView Classic para Windows en su versión 2.40 permite que los atacantes provoquen una denegación de servicio o, posiblemente, otro impacto sin especificar mediante un archivo .svg manipulado. Esta vulnerabilidad está relacionada con Data from Faulting Address controls Branch Selection starting at CADImage+0x000000000001f23e". • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-14541 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-14270
https://notcve.org/view.php?id=CVE-2017-14270
XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to a "User Mode Write AV starting at ntdll_77400000!RtlFillMemoryUlong+0x0000000000000010." XnView Classic 2.40 para Windows permite que los atacantes ejecuten código arbitrario o provoquen una denegación de servicio mediante un archivo .jb2 manipulado, relacionado con "User Mode Write AV comenzando en ntdll_77400000!RtlFillMemoryUlong+0x0000000000000010". • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-14270 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-14280
https://notcve.org/view.php?id=CVE-2017-14280
XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .jb2 file, related to "Data from Faulting Address controls Branch Selection starting at jbig2dec+0x000000000000571d." XnView Classic 2.40 para Windows permite que los atacantes provoquen una denegación de servicio o, posiblemente, otro impacto sin especificar mediante un archivo .jb2 manipulado, relacionado con "Data from Faulting Address controls Branch Selection comenzando en jbig2dec+0x000000000000571d". • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-14280 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-14283
https://notcve.org/view.php?id=CVE-2017-14283
XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .jb2 file, related to a "Read Access Violation starting at jbig2dec+0x0000000000008fe4." XnView Classic 2.40 para Windows permite que los atacantes provoquen una denegación de servicio o, posiblemente, otro impacto sin especificar mediante un archivo .jb2 manipulado, relacionado con "Read Access Violation comenzando en jbig2dec+0x0000000000008fe4". • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-14283 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-14275
https://notcve.org/view.php?id=CVE-2017-14275
XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to a "User Mode Write AV near NULL starting at wow64!Wow64NotifyDebugger+0x000000000000001d." XnView Classic 2.40 para Windows permite que los atacantes ejecuten código arbitrario o provoquen una denegación de servicio mediante un archivo .jb2 manipulado, relacionado con "User Mode Write AV near NULL comenzando en wow64!RtlInterlockedPopEntrySList+0x000000000000001d". • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-14275 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •