First published: Sun Oct 22 2017(Updated: )
IrfanView 4.50 - 64bit with CADImage plugin version 12.0.0.5 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .dwg file, related to "Data from Faulting Address may be used as a return value starting at CADIMAGE+0x00000000003d24a0."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IrfanView | =4.50 | |
IrfanView | =12.0.0.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-15743 has a severity level that can lead to denial of service or other unspecified impacts.
To fix CVE-2017-15743, update IrfanView to the latest version that addresses this vulnerability.
CVE-2017-15743 affects IrfanView version 4.50 with the CADImage plugin version 12.0.0.5.
Yes, exploiting CVE-2017-15743 can potentially allow remote attackers to cause a denial of service.
CVE-2017-15743 is associated with crafted .dwg files that can exploit the vulnerability.