First published: Tue Nov 09 1999(Updated: )
Buffer overflow in IrfanView32 3.07 and earlier allows attackers to execute arbitrary commands via a long string after the "8BPS" image type in a Photo Shop image header.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IrfanView | <=3.0.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-1112 is considered a high severity vulnerability due to the potential for attackers to execute arbitrary commands.
To fix CVE-1999-1112, users should upgrade to IrfanView version 3.08 or later, which addresses this buffer overflow issue.
CVE-1999-1112 can be exploited via crafted Photo Shop image files containing long strings in the header.
IrfanView versions 3.07 and earlier are affected by CVE-1999-1112.
Exploiting CVE-1999-1112 can allow attackers to execute arbitrary commands on the target system, potentially leading to data compromise.