
CVE-2021-28835
https://notcve.org/view.php?id=CVE-2021-28835
11 Aug 2023 — Buffer Overflow vulnerability in XNView before 2.50, allows local attackers to execute arbitrary code via crafted GEM bitmap file. • https://newsgroup.xnview.com/viewtopic.php?f=35&t=44679 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-2017-14538
https://notcve.org/view.php?id=CVE-2017-14538
18 Sep 2017 — XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to "Data from Faulting Address controls subsequent Write Address starting at jbig2dec+0x0000000000008823." XnView Classic para Windows en su versión 2.40 permite que los atacantes ejecuten código arbitrario o provoquen una denegación de servicio mediante un archivo .jb2 manipulado. Esta vulnerabilidad está relacionada con "Data from Faulting Address controls subseq... • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-14538 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-14541
https://notcve.org/view.php?id=CVE-2017-14541
18 Sep 2017 — XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .svg file, related to "Data from Faulting Address controls Branch Selection starting at CADImage+0x000000000001f23e." XnView Classic para Windows en su versión 2.40 permite que los atacantes provoquen una denegación de servicio o, posiblemente, otro impacto sin especificar mediante un archivo .svg manipulado. Esta vulnerabilidad está relacionada con Data from Faulting... • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-14541 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-14270
https://notcve.org/view.php?id=CVE-2017-14270
11 Sep 2017 — XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to a "User Mode Write AV starting at ntdll_77400000!RtlFillMemoryUlong+0x0000000000000010." XnView Classic 2.40 para Windows permite que los atacantes ejecuten código arbitrario o provoquen una denegación de servicio mediante un archivo .jb2 manipulado, relacionado con "User Mode Write AV comenzando en ntdll_77400000!RtlFillMemoryUlong+0x0000000000000010". • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-14270 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-14271
https://notcve.org/view.php?id=CVE-2017-14271
11 Sep 2017 — XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to a "User Mode Write AV starting at ntdll_77400000!RtlImpersonateSelfEx+0x000000000000024e." XnView Classic 2.40 para Windows permite que los atacantes ejecuten código arbitrario o provoquen una denegación de servicio mediante un archivo .jb2 manipulado, relacionado con "User Mode Write AV comenzando en ntdll_77400000!RtlImpersonateSelfEx+0x000000000000024e". • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-14271 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-14272
https://notcve.org/view.php?id=CVE-2017-14272
11 Sep 2017 — XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to a "User Mode Write AV starting at jbig2dec+0x000000000000595d." XnView Classic 2.40 para Windows permite que los atacantes ejecuten código arbitrario o provoquen una denegación de servicio mediante un archivo .jb2 manipulado, relacionado con "User Mode Write AV comenzando en jbig2dec+0x000000000000595d". • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-14272 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-14273
https://notcve.org/view.php?id=CVE-2017-14273
11 Sep 2017 — XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to a "User Mode Write AV starting at ntdll_77400000!RtlInterlockedPopEntrySList+0x00000000000003b0." XnView Classic 2.40 para Windows permite que los atacantes ejecuten código arbitrario o provoquen una denegación de servicio mediante un archivo .jb2 manipulado, relacionado con "User Mode Write AV a partir de ntdll_77400000!RtlInterlockedPopEntrySList+0x00000000000... • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-14273 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-14274
https://notcve.org/view.php?id=CVE-2017-14274
11 Sep 2017 — XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to "Data from Faulting Address controls subsequent Write Address starting at jbig2dec+0x0000000000008706." XnView Classic 2.40 para Windows permite que los atacantes ejecuten código arbitrario o provoquen una denegación de servicio mediante un archivo .jb2 manipulado, relacionado con "Data from Faulting Address controls subsequent Write Address comenzando en jbig2d... • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-14274 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-14275
https://notcve.org/view.php?id=CVE-2017-14275
11 Sep 2017 — XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to a "User Mode Write AV near NULL starting at wow64!Wow64NotifyDebugger+0x000000000000001d." XnView Classic 2.40 para Windows permite que los atacantes ejecuten código arbitrario o provoquen una denegación de servicio mediante un archivo .jb2 manipulado, relacionado con "User Mode Write AV near NULL comenzando en wow64!RtlInterlockedPopEntrySList+0x000000000000001... • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-14275 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-14276
https://notcve.org/view.php?id=CVE-2017-14276
11 Sep 2017 — XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .jb2 file, related to "Possible Stack Corruption starting at jbig2dec+0x0000000000002fbe." XnView Classic 2.40 para Windows permite que los atacantes provoquen una denegación de servicio o, posiblemente, otro impacto sin especificar mediante un archivo .jb2 manipulado, relacionado con "Possible Stack Corruption comenzando en jbig2dec+0x0000000000002fbe". • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-14276 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •