CVE-2017-15245: Buffer Overflow
Published Oct 11, 2017
·Updated
IrfanView version 4.44 (32bit) with PDF plugin version 4.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .pdf file, related to "Data from Faulting Address controls Branch Selection starting at PDF!xmlGetGlobalState+0x0000000000057b76."
Affected Software
2 affected components
IrfanView IrfanView=4.44
IrfanView PDF=4.43
Event History
Oct 11, 2017
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-15245?
CVE-2017-15245 has been classified as a denial of service vulnerability.
2
How do I fix CVE-2017-15245?
To fix CVE-2017-15245, upgrade to a later version of IrfanView and the associated PDF plugin.
3
What are the potential impacts of CVE-2017-15245?
CVE-2017-15245 can lead to denial of service or unspecified other impacts if exploited.
4
Which versions are affected by CVE-2017-15245?
CVE-2017-15245 affects IrfanView version 4.44 with PDF plugin version 4.43.
5
How can I mitigate risks associated with CVE-2017-15245?
To mitigate risks, avoid opening untrusted PDF files with the vulnerable versions of IrfanView.