← Back to CVE List

CVE-2013-3941

Published: 2020-01-02T20:15Z
Last Modified: 2024-11-21T01:54Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Xjp2.dll in XnView before 2.13 allows remote attackers to execute arbitrary code via (1) the Csiz parameter in a SIZ marker, which triggers an incorrect memory allocation, or (2) the lqcd field in a QCD marker in a crafted JPEG2000 file, which leads to a heap-based buffer overflow. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt