CVE-2023-52174

XnView Classic before 2.51.3 on Windows has a Write Access Violation at xnview.exe+0x3125D6.
Configurations

Configuration 1 (hide)

cpe:2.3:a:xnview:xnview_classic:*:*:*:*:*:*:*:*

History

21 Nov 2024, 08:39

Type Values Removed Values Added
References () https://github.com/seyit-sigirci/Vulnerability-Disclosures/blob/main/XNView-Crash-Reports/BOF%5B0x1C94%5D%2B4%7B%2B0~4%231b99%7D%20128.ecf%20%40%20xnview.exe%2B0x3125D6.html - Exploit () https://github.com/seyit-sigirci/Vulnerability-Disclosures/blob/main/XNView-Crash-Reports/BOF%5B0x1C94%5D%2B4%7B%2B0~4%231b99%7D%20128.ecf%20%40%20xnview.exe%2B0x3125D6.html - Exploit
References () https://newsgroup.xnview.com/viewtopic.php?f=35&t=46016 - Release Notes () https://newsgroup.xnview.com/viewtopic.php?f=35&t=46016 - Release Notes

04 Jan 2024, 23:35

Type Values Removed Values Added
First Time Xnview
Xnview xnview Classic
CPE cpe:2.3:a:xnview:xnview_classic:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE CWE-787
References () https://github.com/seyit-sigirci/Vulnerability-Disclosures/blob/main/XNView-Crash-Reports/BOF%5B0x1C94%5D%2B4%7B%2B0~4%231b99%7D%20128.ecf%20%40%20xnview.exe%2B0x3125D6.html - () https://github.com/seyit-sigirci/Vulnerability-Disclosures/blob/main/XNView-Crash-Reports/BOF%5B0x1C94%5D%2B4%7B%2B0~4%231b99%7D%20128.ecf%20%40%20xnview.exe%2B0x3125D6.html - Exploit
References () https://newsgroup.xnview.com/viewtopic.php?f=35&t=46016 - () https://newsgroup.xnview.com/viewtopic.php?f=35&t=46016 - Release Notes

29 Dec 2023, 04:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-29 04:15

Updated : 2024-11-21 08:39


NVD link : CVE-2023-52174

Mitre link : CVE-2023-52174

CVE.ORG link : CVE-2023-52174


JSON object : View

Products Affected

xnview

  • xnview_classic
CWE
CWE-787

Out-of-bounds Write