CVE-2017-15248: Buffer Overflow
IrfanView version 4.44 (32bit) with PDF plugin version 4.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .pdf file, related to "Data from Faulting Address controls Code Flow starting at PDF!xmlGetGlobalState+0x0000000000063ca6."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-15248?
CVE-2017-15248 has a severity rating that allows attackers to execute arbitrary code or trigger a denial of service.
How do I fix CVE-2017-15248?
To mitigate CVE-2017-15248, users should update IrfanView to version 4.44 or later and ensure the PDF plugin is also updated.
What software is affected by CVE-2017-15248?
CVE-2017-15248 affects IrfanView version 4.44 (32bit) and PDF plugin version 4.43.
What type of attacks is possible with CVE-2017-15248?
CVE-2017-15248 allows attackers to execute arbitrary code or Cause a denial of service through crafted PDF files.
What is the impact of CVE-2017-15248 on users?
Users of IrfanView with the vulnerable versions may experience compromised system security and potential data loss.