CVE-2017-15254: Buffer Overflow
IrfanView version 4.44 (32bit) with PDF plugin version 4.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .pdf file, related to a "Read Access Violation starting at PDF!xmlGetGlobalState+0x000000000007dfa5."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-15254?
CVE-2017-15254 has a medium severity since it can cause a denial of service through specially crafted PDF files.
How do I fix CVE-2017-15254?
To fix CVE-2017-15254, users should update to the latest version of IrfanView and the PDF plugin.
Which versions are affected by CVE-2017-15254?
CVE-2017-15254 affects IrfanView version 4.44 (32bit) and PDF plugin version 4.43.
What impact can CVE-2017-15254 have?
CVE-2017-15254 can lead to a denial of service or potentially unspecified other impacts upon processing malicious PDF files.
Is there any workaround for CVE-2017-15254?
Currently, there are no known workarounds for CVE-2017-15254 other than updating the affected software.