CVE-2017-9892: Buffer Overflow
IrfanView version 4.44 (32bit) with FPX Plugin 4.46 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .fpx file, related to "Data from Faulting Address controls Branch Selection starting at ntdll77df0000!RtlpFreeHeap+0x0000000000000393."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-9892?
CVE-2017-9892 is classified as a denial of service vulnerability affecting IrfanView version 4.44 with FPX Plugin 4.46.
How do I fix CVE-2017-9892?
To fix CVE-2017-9892, ensure that you update IrfanView and the FPX Plugin to the latest versions available.
What type of impact can CVE-2017-9892 have?
CVE-2017-9892 can lead to denial of service or possibly other unspecified impacts when processing crafted .fpx files.
Which versions of IrfanView are affected by CVE-2017-9892?
IrfanView version 4.44 and FPX Plugin version 4.46 are affected by CVE-2017-9892.
What file type is associated with CVE-2017-9892?
CVE-2017-9892 is associated with the .fpx file type which can be leveraged to trigger the vulnerability.