VYPR

Xnview

by Pierreegougelet

CVEs (2)

  • CVE-2008-0069Apr 2, 2008
    risk 0.04cvss epss 0.12

    Stack-based buffer overflow in XnView 1.92 and 1.92.1 allows user-assisted remote attackers to execute arbitrary code via a long FontName parameter in a slideshow (.sld) file, a different vector than CVE-2008-1461.

  • CVE-2008-0064Jan 31, 2008
    risk 0.01cvss epss 0.07

    Stack-based buffer overflow in Pierre-emmanuel Gougelet (1) XnView 1.91 and 1.92, (2) NConvert 4.85, and (3) libgfl280.dll in GFL SDK 2.870 for Windows allows user-assisted remote attackers to execute arbitrary code via a crafted Radiance RGBE (.hdr) file.