XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .fpx file, related to a "Read Access Violation on Control Flow starting at Xfpx!gffGetFormatInfo+0x0000000000020e95."Referenceshttps://github.com/wlinzi/security_advisories/tree/master/CVE-2017-9895