CVE-2017-9879: Buffer Overflow
IrfanView version 4.44 (32bit) with FPX Plugin 4.46 allows attackers to execute arbitrary code or cause a denial of service via a crafted .fpx file, related to "Data from Faulting Address controls subsequent Write Address starting at FPX!FPXGetScanDevicePropertyGroup+0x000000000000a525."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-9879?
The severity of CVE-2017-9879 is high due to the potential for remote code execution and denial of service.
How do I fix CVE-2017-9879?
To fix CVE-2017-9879, update to the latest version of IrfanView and ensure the FPX Plugin is also updated.
What types of attacks can exploit CVE-2017-9879?
CVE-2017-9879 can be exploited by attackers to execute arbitrary code or cause a denial of service through maliciously crafted .fpx files.
Which versions of IrfanView are affected by CVE-2017-9879?
IrfanView version 4.44 (32bit) with FPX Plugin version 4.46 is affected by CVE-2017-9879.
What is the impact of CVE-2017-9879 on users?
Users of IrfanView may experience significant security risks, including the possibility of unauthorized code execution if they open malicious .fpx files.