CVE-2017-15239: Buffer Overflow
IrfanView 4.44 - 32bit with PDF plugin version 4.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .pdf file, related to "Data from Faulting Address may be used as a return value starting at PDF!xmlParserInputRead+0x0000000000040db4."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-15239?
CVE-2017-15239 has been classified as a vulnerability that can potentially cause a denial of service.
How do I fix CVE-2017-15239?
To fix CVE-2017-15239, update IrfanView to version 4.44 or later and ensure that the PDF plugin is updated.
What versions of IrfanView are affected by CVE-2017-15239?
CVE-2017-15239 affects IrfanView version 4.44 and the PDF plugin version 4.43.
Can CVE-2017-15239 be exploited remotely?
CVE-2017-15239 can be exploited remotely when a user opens a malicious PDF file crafted by an attacker.
What type of impact does CVE-2017-15239 have?
The impact of CVE-2017-15239 includes potential denial of service or unspecified other impacts due to improper handling of crafted PDF files.