Buffer overflow in STDU Viewer - CVE-2017-14577
Published: September 18, 2017 / Updated: August 8, 2020
STDU Viewer
Detailed vulnerability description
The vulnerability allows a local authenticated user to execute arbitrary code.
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, related to a "Read Access Violation on Control Flow starting at Unknown Symbol @ 0x0000000003aa7cef called from Unknown Symbol @ 0x0000000004aa024d."