HIGH
Buffer overflow in XnView before 2.04 allows remote attackers to execute arbitrary code via a crafted PCT file
Published Aug 9, 2013
9.3
HIGHCVSS 2.0
EPSS 11.80%
Description
Buffer overflow in XnView before 2.04 allows remote attackers to execute arbitrary code via a crafted PCT file.
Affected products
No data.
OR
- ≤ 2.03
- 1.0
- 1.01
- 1.02
- 1.03
- 1.04
- 1.05
- 1.05
- 1.05
- 1.06
- 1.07
- 1.08
- 1.09
- 1.10
- 1.11
- 1.12
- 1.13
- 1.14
- 1.15
- 1.16
- 1.17
- 1.17
- 1.18
- 1.18.1
- 1.19
- 1.20
- 1.21
- 1.22
- 1.23
- 1.24
- 1.25
- 1.25
- 1.30
- 1.31
- 1.32
- 1.33
- 1.34
- 1.35
- 1.36
- 1.37
- 1.40
- 1.41
- 1.45
- 1.46
- 1.50
- 1.50.1
- 1.55
- 1.60
- 1.61
- 1.65
- 1.66
- 1.67
- 1.68
- 1.68.1
- 1.70
- 1.70.2
- 1.70.3
- 1.70.4
- 1.74
- 1.80
- 1.80.1
- 1.80.2
- 1.80.3
- 1.82
- 1.82.2
- 1.82.3
- 1.82.4
- 1.90
- 1.90.1
- 1.90.3
- 1.91
- 1.91.1
- 1.91.2
- 1.91.3
- 1.91.4
- 1.91.5
- 1.91.6
- 1.92
- 1.92.1
- 1.93
- 1.93.1
- 1.93.2
- 1.93.3
- 1.93.4
- 1.93.6
- 1.94
- 1.94.1
- 1.94.2
- 1.95
- 1.95.1
- 1.95.2
- 1.95.3
- 1.95.4
- 1.96
- 1.96.1
- 1.96.2
- 1.96.5
- 1.97
- 1.97.1
- 1.97.2
- 1.97.3
- 1.97.4
- 1.97.5
- 1.97.6
- 1.97.7
- 1.97.8
- 1.98
- 1.98.1
- 1.98.2
- 1.98.3
- 1.98.4
- 1.98.5
- 1.98.6
- 1.98.7
- 1.98.8
- 1.99
- 1.99.1
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (8)
- http://archives.neohapsis.com/archives/bugtraq/2013-07/0153.html mailing-listx_refsource_BUGTRAQExploit
- http://newsgroup.xnview.com/viewtopic.php?f=35&t=28400 x_refsource_CONFIRMPatch
- http://osvdb.org/95580 vdb-entryx_refsource_OSVDB
- http://secunia.com/advisories/54174 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://www.coresecurity.com/advisories/xnview-buffer-overflow-vulnerability x_refsource_MISCExploit
- http://www.exploit-db.com/exploits/27049 exploitx_refsource_EXPLOIT-DB
- http://www.securitytracker.com/id/1028817 vdb-entryx_refsource_SECTRACK
- https://exchange.xforce.ibmcloud.com/vulnerabilities/85919 vdb-entryx_refsource_XF
| Link | Providers | Tags |
|---|---|---|
| http://archives.neohapsis.com/archives/bugtraq/2013-07/0153.html | mailing-listx_refsource_BUGTRAQExploit | |
| http://newsgroup.xnview.com/viewtopic.php?f=35&t=28400 | x_refsource_CONFIRMPatch | |
| http://osvdb.org/95580 | vdb-entryx_refsource_OSVDB | |
| http://secunia.com/advisories/54174 | third-party-advisoryx_refsource_SECUNIAVendor Advisory | |
| http://www.coresecurity.com/advisories/xnview-buffer-overflow-vulnerability | x_refsource_MISCExploit | |
| http://www.exploit-db.com/exploits/27049 | exploitx_refsource_EXPLOIT-DB | |
| http://www.securitytracker.com/id/1028817 | vdb-entryx_refsource_SECTRACK | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/85919 | vdb-entryx_refsource_XF |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Aug 9, 2013
Updated Aug 6, 2024
Reserved Mar 15, 2013
Link CVE-2013-2577
CISA Vulnrichment
Updated n/a