[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Multiple heap-based buffer overflow vulnerabilities in XnView via a SGI32LogLum compressed TIFF image or SGI32LogLum compressed TIFF image with the PhotometricInterpretation encoding set to LogL

ID: oval:org.secpod.oval:def:6407Date: (C)2012-07-18   (M)2021-06-02
Class: VULNERABILITYFamily: windows




The host is installed with XnView before 1.99 and is prone to multiple heap-based buffer overflow vulnerabilities. The flaws are present in the application, which fails to handle a SGI32LogLum compressed TIFF image or SGI32LogLum compressed TIFF image with the PhotometricInterpretation encoding set to LogL. Successful exploitation allows remote attackers to cause a denial of service.

Platform:
Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product:
XnView
Reference:
CVE-2012-0276
CVE    1
CVE-2012-0276
CPE    2
cpe:/a:xnview:xnview:1.98.8
cpe:/a:xnview:xnview

© SecPod Technologies