CVE-2008-0069

Pierreegougelet Xnview < 1.92 - Memory Corruption

Title source: rule

Description

Stack-based buffer overflow in XnView 1.92 and 1.92.1 allows user-assisted remote attackers to execute arbitrary code via a long FontName parameter in a slideshow (.sld) file, a different vector than CVE-2008-1461.

Exploits (1)

exploitdb WORKING POC VERIFIED
by haluznik · perllocalwindows
https://www.exploit-db.com/exploits/5346

Scores

EPSS 0.1220
EPSS Percentile 93.9%

Details

CWE
CWE-119
Status published
Products (1)
pierreegougelet/xnview < 1.92
Published Apr 02, 2008
Tracked Since Feb 18, 2026