CVE-2017-10924: Buffer Overflow
Published Jul 5, 2017
·Updated
IrfanView 4.44 (32bit) with FPX Plugin 4.47 allows attackers to execute arbitrary code or cause a denial of service via a crafted .fpx file, related to a "User Mode Write AV starting at FPX!FPXGetScanDevicePropertyGroup+0x000000000000a529."
Affected Software
2 affected components
IrfanView IrfanView=4.44
IrfanView FPX=4.47
Event History
Jul 5, 2017
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-10924?
CVE-2017-10924 is considered to have a high severity due to the potential for arbitrary code execution and denial of service.
2
How do I fix CVE-2017-10924?
To fix CVE-2017-10924, update IrfanView to version 4.44 or later and ensure the FPX plugin is also updated.
3
What types of attacks can CVE-2017-10924 facilitate?
CVE-2017-10924 can facilitate attacks that execute arbitrary code or lead to a denial of service.
4
Which versions of IrfanView are affected by CVE-2017-10924?
IrfanView version 4.44 and FPX Plugin version 4.47 are specifically affected by CVE-2017-10924.
5
What file type is associated with CVE-2017-10924 vulnerabilities?
The vulnerability CVE-2017-10924 is associated with crafted .fpx files.