Denial of Service and Possible Remote Code Execution in XnView Classic for Windows Version 2.43 via Crafted .dwg File

Denial of Service and Possible Remote Code Execution in XnView Classic for Windows Version 2.43 via Crafted .dwg File

CVE-2017-15778 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:P

XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .dwg file, related to a "Read Access Violation starting at CADImage+0x0000000000285de7."

Learn more about our Web Application Penetration Testing UK.