CVE-2017-9878: Buffer Overflow
IrfanView version 4.44 (32bit) with FPX Plugin 4.46 allows attackers to execute arbitrary code or cause a denial of service via a crafted .fpx file, related to a "Read Access Violation on Control Flow starting at FPX!FPXGetScanDevicePropertyGroup+0x000000000000c99a."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-9878?
CVE-2017-9878 is classified as a medium severity vulnerability due to its potential for arbitrary code execution and denial of service.
How do I fix CVE-2017-9878?
To fix CVE-2017-9878, it is recommended to update to a later version of IrfanView that addresses the vulnerability.
What types of attacks can exploit CVE-2017-9878?
CVE-2017-9878 can be exploited by attackers using specially crafted .fpx files to execute arbitrary code.
Is CVE-2017-9878 specific to certain versions of IrfanView?
Yes, CVE-2017-9878 specifically affects IrfanView version 4.44 (32bit) and FPX Plugin version 4.46.
What is the impact of CVE-2017-9878 on affected systems?
The impact of CVE-2017-9878 on affected systems includes potential arbitrary code execution or denial of service.