PT-2018-12922 · Xnview · Xnview

Code16

·

Published

2018-08-07

·

Updated

2018-10-04

·

CVE-2018-15174

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions XnView version 2.45
Description The issue allows remote attackers to cause a denial of service, resulting in a Read Access Violation at the Instruction Pointer and application crash, via a crafted ICO file. It may also have unspecified other impact.
Recommendations For version 2.45, update to a newer version that contains a fix for this issue to prevent potential denial of service and other unspecified impacts.

Exploit

Fix

DoS

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-15174

Affected Products

Xnview