CVE-2017-15772
https://notcve.org/view.php?id=CVE-2017-15772
XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .dwg file, related to "Data from Faulting Address may be used as a return value starting at CADImage+0x0000000000285e9d." XnView Classic para Windows en su versión 2.43 permite que los atacantes provoquen una denegación de servicio o, posiblemente, otro impacto sin especificar mediante un archivo .dwg manipulado. Esta vulnerabilidad está relacionada con "Data from Faulting Address may be used as a return value starting at CADImage+0x0000000000285e9d". • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-15772 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-15778
https://notcve.org/view.php?id=CVE-2017-15778
XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .dwg file, related to a "Read Access Violation starting at CADImage+0x0000000000285de7." XnView Classic para Windows en su versión 2.43 permite que los atacantes provoquen una denegación de servicio o, posiblemente, otro impacto sin especificar mediante un archivo .dwg manipulado, relacionado con "Read Access Violation starting at CADImage+0x0000000000285de7". • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-15778 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •