CVE-2017-15250: Buffer Overflow
Published Oct 11, 2017
·Updated
IrfanView version 4.44 (32bit) with PDF plugin version 4.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .pdf file, related to a "Read Access Violation starting at PDF!xmlParserInputRead+0x0000000000132e19."
Affected Software
2 affected components
IrfanView IrfanView=4.44
IrfanView PDF=4.43
Event History
Oct 11, 2017
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-15250?
CVE-2017-15250 is classified as a denial of service vulnerability.
2
How do I fix CVE-2017-15250?
To fix CVE-2017-15250, update IrfanView to version 4.44 or later and ensure the PDF plugin is also updated.
3
What are the potential impacts of CVE-2017-15250?
The potential impacts of CVE-2017-15250 include denial of service and possibly other unspecified effects.
4
Which versions of IrfanView are affected by CVE-2017-15250?
IrfanView version 4.44 (32bit) and PDF plugin version 4.43 are affected by CVE-2017-15250.
5
What type of file triggers CVE-2017-15250 vulnerabilities?
CVE-2017-15250 can be triggered by a crafted .pdf file.