First published: Sun Oct 22 2017(Updated: )
IrfanView 4.50 - 64bit with CADImage plugin version 12.0.0.5 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .dwg file, related to "Data from Faulting Address controls Branch Selection starting at CADIMAGE+0x00000000000348b9."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IrfanView | =4.50 | |
IrfanView | =12.0.0.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-15749 has a severity rating that indicates it can lead to denial of service and possible further impacts.
To fix CVE-2017-15749, ensure you update IrfanView and the CADImage plugin to versions that address this vulnerability.
CVE-2017-15749 can facilitate denial of service attacks using a crafted .dwg file.
CVE-2017-15749 affects IrfanView version 4.50 and CADImage plugin version 12.0.0.5.
CVE-2017-15749 can cause application crashes and may permit attackers to disrupt service.