CVE-2008-5870: Input Validation
FastStone Image Viewer 3.6 allows user-assisted attackers to cause a denial of service (application crash) via a malformed BMP image with large width and height values, possibly a related issue to CVE-2007-1942.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-5870?
CVE-2008-5870 is considered to have a moderate severity level due to its potential to cause denial of service through application crashes.
How do I fix CVE-2008-5870?
To fix CVE-2008-5870, update FastStone Image Viewer to a version that no longer supports malformed BMP image processing.
What exploit is associated with CVE-2008-5870?
CVE-2008-5870 is associated with user-assisted attacks that exploit malformed BMP images to crash the application.
What software versions are affected by CVE-2008-5870?
CVE-2008-5870 specifically affects FastStone Image Viewer version 3.6.
Can CVE-2008-5870 be exploited without user interaction?
No, CVE-2008-5870 requires user interaction for exploitation, as the attacker must convince the user to open the malformed image.