CVE-2017-14577: Stdutility Stdu Viewer
High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, related to a "Read Access Violation on Control Flow starting at Unknown Symbol @ 0x0000000003aa7cef called from Unknown Symbol @ 0x0000000004aa024d."
Affected products
- Stdutility Stdu Viewer: version 1.6.375 only
Published 2017-09-18. Last modified 2026-06-17.