CVE-2017-9875: Buffer Overflow
Published Jul 5, 2017
·Updated
IrfanView version 4.44 (32bit) with FPX Plugin 4.46 allows attackers to execute arbitrary code or cause a denial of service via a crafted .fpx file, related to a "User Mode Write AV starting at FPX!DEDecode+0x0000000000000cdb."
Affected Software
2 affected components
IrfanView IrfanView=4.44
IrfanView FPX=4.46
Event History
Jul 5, 2017
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-9875?
CVE-2017-9875 is considered a critical vulnerability as it allows attackers to execute arbitrary code or cause a denial of service.
2
How do I fix CVE-2017-9875?
To fix CVE-2017-9875, update IrfanView to the latest version available or disable the FPX plugin.
3
What software versions are impacted by CVE-2017-9875?
CVE-2017-9875 affects IrfanView version 4.44 (32bit) with FPX Plugin version 4.46.
4
What type of attack is possible through CVE-2017-9875?
CVE-2017-9875 allows attackers to execute arbitrary code through the exploitation of a crafted .fpx file.
5
Is CVE-2017-9875 a remote vulnerability?
CVE-2017-9875 can be exploited remotely through the manipulation of .fpx files.