DaviewIndy 8.98.7 and earlier versions have a Heap-based overflow vulnerability, triggered when the user opens a malformed DIB format file that is mishandled by Daview.exe. Attackers could exploit this and arbitrary code execution.Referenceshttps://www.krcert.or.kr/krcert/secNoticeView.do?bulletin_writing_sequence=34995