First published: Sun Oct 22 2017(Updated: )
IrfanView 4.50 - 64bit with CADImage plugin version 12.0.0.5 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .dwg file, related to "Data from Faulting Address controls Branch Selection starting at CADIMAGE+0x00000000003d21b3."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IrfanView | =4.50 | |
IrfanView | =12.0.0.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-15746 has been evaluated as a potential denial of service vulnerability.
To mitigate CVE-2017-15746, update IrfanView and the CADImage plugin to the latest versions that address this vulnerability.
IrfanView version 4.50 is specifically affected by CVE-2017-15746 when used with the CADImage plugin version 12.0.0.5.
CVE-2017-15746 can allow attackers to cause a denial of service or possibly other unspecified impacts.
The CVE-2017-15746 vulnerability is linked to crafted .dwg files.