[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Heap-based buffer overflow in IrfanView via a crafted PSD image with RLE compression

ID: oval:org.mitre.oval:def:6705Date: (C)2010-05-19   (M)2022-10-10
Class: VULNERABILITYFamily: windows




IrfanView before 4.27 does not properly handle an unspecified integer variable during processing of PSD images, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted image file that triggers a heap-based buffer overflow, related to a "sign-extension error."

Platform:
Microsoft Windows 2000
Microsoft Windows XP
Microsoft Windows Vista
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows 7
Product:
IrfanView
Reference:
CVE-2010-1509
CVE    1
CVE-2010-1509
CPE    79
cpe:/a:irfanview:irfanview:2.90
cpe:/a:irfanview:irfanview:3.25
cpe:/a:irfanview:irfanview:1.98a
cpe:/a:irfanview:irfanview:2.55
...

© SecPod Technologies