Stdutility maintains a narrow but prominently tracked portfolio centered on file-viewing and file-management utilities, particularly its Stdu Viewer and Stdu Explorer products. The vulnerability disclosures affecting this vendor cluster around memory-safety issues, notably improper restrictions of operations within memory buffer boundaries, which are characteristic of native-code utilities that parse diverse file formats. While the product footprint is small, the vendor's exposure is more prominent than typical in the landscape, reflecting the widespread deployment of these utilities in contexts where file handling is routine. Defenders should monitor this vendor's updates where these utilities are in use, particularly in environments handling untrusted or complex file formats; current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Stdutility over time
Signals from CVEs in this vendor scope (69 CVEs).
69 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-14566HIGH STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, related to a "User Mode Write AV starting at Unknown Symbol @ 0 | Sep 18, 2017 | 7.8 | 25 | NO | NO |
CVE-2017-14692HIGH STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to a "User Mode Write AV starting at STDUJBIG2File!DllG | Sep 22, 2017 | 7.8 | 23 | NO | NO |
CVE-2017-14691HIGH STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .jb2 file, related to "Data from Faulting Address controls | Sep 22, 2017 | 7.8 | 23 | NO | NO |
CVE-2017-14690HIGH STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to "Data from Faulting Address controls subsequent Writ | Sep 22, 2017 | 7.8 | 23 | NO | NO |
CVE-2017-14689HIGH STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .djvu file, related to "Data from Faulting Address is used | Sep 22, 2017 | 7.8 | 23 | NO | NO |
CVE-2017-14688HIGH STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .djvu file, related to a "Read Access Violation starting a | Sep 22, 2017 | 7.8 | 23 | NO | NO |
CVE-2017-14576HIGH STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .xps file, related to a "Possible Stack Corruption startin | Sep 18, 2017 | 7.8 | 23 | NO | NO |
CVE-2017-14569HIGH STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .xps file, related to a "Read Access Violation starting at | Sep 18, 2017 | 7.8 | 23 | NO | NO |
CVE-2017-14567HIGH STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, related to an "Illegal Instruction Violation starting at Unknow | Sep 18, 2017 | 7.8 | 23 | NO | NO |
CVE-2017-14556HIGH STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .djvu file, related to a "User Mode Write AV starting at STDUDjVuFile!DllU | Sep 18, 2017 | 7.8 | 23 | NO | NO |
Signals from CVEs in this vendor scope (69 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Stdutility.
Media articles that mention a CVE ID that affects a product developed by Stdutility — matched by CVE ID, not by vendor name.