Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Mon, 28 May 2012 05:10:29 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=2069640126&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2Ffiledesc%2Fsecunia-xnviewdicom.txt.html%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.2069640126.1338181829.1338181829.1338181829.1%3B%2B__utmz%3D32867617.1338181829.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) XnView DICOM Parsing Integer Overflow http://packetstormsecurity.org/files/87104/secunia-xnviewdicom.txt http://packetstormsecurity.org/files/87104/secunia-xnviewdicom.txt http://packetstormsecurity.org/files/87104/XnView-DICOM-Parsing-Integer-Overflow.html Thu, 11 Mar 2010 02:23:39 GMT Secunia Research has discovered a vulnerability in XnView, which can be exploited by malicious people to potentially compromise a user's system. The vulnerability is caused due to an integer overflow when processing DICOM images with certain dimensions. This can be exploited to cause a heap-based buffer overflow by e.g. tricking a user into opening a specially crafted DICOM file. Version 1.97 is affected.