CVE-2017-15738: Buffer Overflow
Published Oct 22, 2017
·Updated
IrfanView 4.50 - 64bit with CADImage plugin version 12.0.0.5 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .dwg file, related to a "Read Access Violation starting at CADIMAGE+0x00000000003d22d8."
Affected Software
2 affected components
IrfanView Irfanview X64=4.50
IrfanView CADImage=12.0.0.5
Event History
Oct 22, 2017
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-15738?
CVE-2017-15738 has a moderate severity level as it can lead to denial of service.
2
How do I fix CVE-2017-15738?
To fix CVE-2017-15738, update IrfanView to a version that is not affected by this vulnerability.
3
What type of vulnerability is CVE-2017-15738?
CVE-2017-15738 is a denial of service vulnerability affecting IrfanView with the CADImage plugin.
4
Which versions of IrfanView are affected by CVE-2017-15738?
IrfanView version 4.50 and CADImage plugin version 12.0.0.5 are affected by CVE-2017-15738.
5
What impact does CVE-2017-15738 have?
CVE-2017-15738 can cause a denial of service and potentially other unspecified impacts when processing a crafted .dwg file.