Retour à la veille

CVE-2026-107125

Publié : 7 octobre 2026
Modifié : 7 octobre 2026
Lien officiel NVD
Score CVSS
6.3
MEDIUM

Description détaillée

A flaw has been found in XnView Classic 2.52.5. Impacted is an unknown function of the component FLI File Parser. This manipulation of the argument starting_line causes heap-based buffer overflow. Remote exploitation of the attack is possible. Upgrading to version 2.52.6 is recommended to address this issue. Upgrading the affected component is advised.

Vecteur d'attaque (CVSS)

Vecteur brut :CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L

Références et Patchs