Arbitrary Code Execution and Denial of Service Vulnerability in XnView Classic 2.40 via Crafted .jb2 File
CVE-2017-14538 · MEDIUM Severity
AV:L/AC:L/AU:N/C:P/I:P/A:P
XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to "Data from Faulting Address controls subsequent Write Address starting at jbig2dec+0x0000000000008823."
Learn more about our Web Application Penetration Testing UK.