XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .fpx file, related to a "User Mode Write AV starting at Xfpx!gffGetFormatInfo+0x0000000000029272."Referenceshttps://github.com/wlinzi/security_advisories/tree/master/CVE-2017-9894