Release date: 2012-03-12
Updated on: 2012-03-13
Affected Systems:
XnView 1.x
Description:
--------------------------------------------------------------------------------
Bugtraq id: 52405
XnView is a browser Image Viewer that supports multiple graphic formats.
XnView has multiple buffer overflow vulnerabilities. After successful exploitation, attackers can execute arbitrary code.
1) when verifying the buffer size to process image content, there is a signature error in the FlashPix plug-in (Xfpx. dll). You can use a specially crafted FPX file to cause heap buffer overflow.
2) A boundary error exists in parsing the directory name during folder browsing. Stack Buffer Overflow may occur when you view the folder from the decompressed document.
3) There is an error in processing image data in the PCX file. You can use a special file to cause heap buffer overflow.
<* Source: Francis Provencher
Link: http://secunia.com/advisories/47388/
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
XnView
------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.xnview.com/