CVE-2017-15765: Buffer Overflow
IrfanView 4.50 - 64bit with CADImage plugin version 12.0.0.5 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .dwg file, related to "Data from Faulting Address is used as one or more arguments in a subsequent Function Call starting at CADIMAGE+0x00000000003e9462."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-15765?
CVE-2017-15765 has a medium severity rating due to the potential for denial of service attacks.
How do I fix CVE-2017-15765?
To fix CVE-2017-15765, update to IrfanView 4.51 or higher, and ensure the CADImage plugin is updated to the latest version.
What type of attack does CVE-2017-15765 enable?
CVE-2017-15765 enables attackers to cause a denial of service through a crafted .dwg file.
Which software versions are affected by CVE-2017-15765?
CVE-2017-15765 affects IrfanView 4.50 - 64bit and CADImage plugin version 12.0.0.5.
What is the impact of exploiting CVE-2017-15765?
Exploiting CVE-2017-15765 may lead to denial of service or potentially unspecified other impacts.