Filtered by vendor Irfanview
Subscribe
Total
203 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2012-3585 | 1 Irfanview | 2 Irfanview, Irfanview Plugins | 2024-11-21 | 9.3 HIGH | N/A |
Heap-based buffer overflow in jpeg_ls.dll in the Jpeg_LS (aka JLS) plugin in the formats plugins in IrfanView PlugIns before 4.34 allows remote attackers to execute arbitrary code via a crafted JLS file. | |||||
CVE-2012-0897 | 1 Irfanview | 1 Irfanview | 2024-11-21 | 6.8 MEDIUM | N/A |
Stack-based buffer overflow in the JPEG2000 plugin in IrfanView PlugIns before 4.33 allows remote attackers to execute arbitrary code via a JPEG2000 (JP2) file with a crafted Quantization Default (QCD) marker segment. | |||||
CVE-2012-0278 | 1 Irfanview | 2 Flashpix Plugin, Irfanview | 2024-11-21 | 9.3 HIGH | N/A |
Heap-based buffer overflow in the FlashPix PlugIn before 4.3.4.0 for IrfanView might allow remote attackers to execute arbitrary code via a .fpx file containing a crafted FlashPix image that is not properly handled during decompression. | |||||
CVE-2012-0025 | 1 Irfanview | 1 Flashpix Plugin | 2024-11-21 | 6.8 MEDIUM | N/A |
Double free vulnerability in the Free_All_Memory function in jpeg/dectile.c in libfpx before 1.3.1-1, as used in the FlashPix PlugIn 4.2.2.0 for IrfanView, allows remote attackers to cause a denial of service (crash) via a crafted FPX image. | |||||
CVE-2011-5233 | 1 Irfanview | 1 Irfanview | 2024-11-21 | 4.3 MEDIUM | N/A |
Heap-based buffer overflow in IrfanView before 4.32 allows remote attackers to execute arbitrary code via crafted "Rows Per Strip" and "Samples Per Pixel" values in a TIFF image file. | |||||
CVE-2010-1510 | 1 Irfanview | 1 Irfanview | 2024-11-21 | 5.0 MEDIUM | N/A |
Heap-based buffer overflow in IrfanView before 4.27 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PSD image with RLE compression. | |||||
CVE-2010-1509 | 1 Irfanview | 1 Irfanview | 2024-11-21 | 5.0 MEDIUM | N/A |
IrfanView before 4.27 does not properly handle an unspecified integer variable during processing of PSD images, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted image file that triggers a heap-based buffer overflow, related to a "sign-extension error." | |||||
CVE-2009-2118 | 1 Irfanview | 1 Irfanview | 2024-11-21 | 6.8 MEDIUM | N/A |
Integer overflow in IrfanView 4.23, when the resampling or screen fitting option is enabled, allows remote attackers to execute arbitrary code via a crafted TIFF 1 BPP image, which triggers a heap-based buffer overflow. | |||||
CVE-2009-0197 | 1 Irfanview | 1 Formats | 2024-11-21 | 9.3 HIGH | N/A |
Integer overflow in the FORMATS Plugin before 4.23 for IrfanView allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a large XPM file that triggers a heap-based buffer overflow. | |||||
CVE-2008-0493 | 1 Irfanview | 1 Irfanview | 2024-11-21 | 9.3 HIGH | N/A |
fpx.dll 3.9.8.0 in the FlashPix plugin for IrfanView 4.10 allows remote attackers to execute arbitrary code via a crafted FlashPix (.FPX) file, which triggers heap corruption. NOTE: some of these details are obtained from third party information. | |||||
CVE-2007-4343 | 1 Irfanview | 1 Irfanview | 2024-11-21 | 5.1 MEDIUM | N/A |
Stack-based buffer overflow in IrfanView 3.99 and 4.00 allows user-assisted remote attackers to execute arbitrary code via a crafted palette (.pal) file. | |||||
CVE-2007-2363 | 1 Irfanview | 1 Irfanview | 2024-11-21 | 8.5 HIGH | N/A |
Buffer overflow in IrfanView 4.00 and earlier allows user-assisted remote attackers to execute arbitrary code via a crafted .IFF file. | |||||
CVE-2007-1948 | 1 Irfanview | 1 Irfanview | 2024-11-21 | 9.3 HIGH | N/A |
Buffer overflow in IrfanView 3.99 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via the (1) xoffset or (2) yoffset RLE command, or (3) large non-RLE encoded blocks in a crafted BMP image, as demonstrated by rle8of3.bmp and rle8of4.bmp. | |||||
CVE-2007-1867 | 1 Irfanview | 1 Irfanview | 2024-11-21 | 10.0 HIGH | N/A |
Buffer overflow in IrfanView 3.99 allows remote attackers to execute arbitrary code via a crafted animated cursor (ANI) file. | |||||
CVE-2007-1245 | 1 Irfanview | 1 Irfanview | 2024-11-21 | 4.3 MEDIUM | N/A |
IrfanView 3.99 allows remote attackers to cause a denial of service (application crash) via a malformed WMF file. | |||||
CVE-2006-4374 | 1 Irfanview | 1 Irfanview | 2024-11-21 | 2.6 LOW | N/A |
IrfanView 3.98 (with plugins) allows user-assisted attackers to cause a denial of service (application crash) via a crafted ANI image file, possibly due to a buffer overflow. | |||||
CVE-2006-4231 | 1 Irfanview | 1 Irfanview | 2024-11-21 | 2.6 LOW | N/A |
IrfanView 3.98 (with plugins) allows remote attackers to cause a denial of service (application crash) via a crafted CUR image file. | |||||
CVE-1999-1112 | 1 Irfanview | 1 Irfanview | 2024-11-20 | 7.5 HIGH | N/A |
Buffer overflow in IrfanView32 3.07 and earlier allows attackers to execute arbitrary commands via a long string after the "8BPS" image type in a Photo Shop image header. | |||||
CVE-2024-44913 | 1 Irfanview | 1 Irfanview | 2024-08-30 | N/A | 5.5 MEDIUM |
An issue in the component EXR!ReadEXR+0x40ef1 of Irfanview v4.67.1.0 allows attackers to cause an access violation via a crafted EXR file. This vulnerability can lead to a Denial of Service (DoS). | |||||
CVE-2024-44914 | 1 Irfanview | 1 Irfanview | 2024-08-30 | N/A | 5.5 MEDIUM |
An issue in the component EXR!ReadEXR+0x3df50 of Irfanview v4.67.1.0 allows attackers to cause an access violation via a crafted EXR file. This vulnerability can lead to a Denial of Service (DoS). |