CVE-2013-2577: Xnview

High severity, CVSS 9.3. EPSS: 11.8% chance of exploitation in the next 30 days.

Buffer overflow in XnView before 2.04 allows remote attackers to execute arbitrary code via a crafted PCT file.

Affected products

  • Xnview Xnview: up to and including 2.03; version 1.0 only; version 1.01 only; version 1.02 only; version 1.03 only; version 1.04 only; …

Published 2013-08-09. Last modified 2026-06-16.