CVE-2019-16887: High severity irfanview vulnerability
Published Sep 25, 2019
·Updated
In IrfanView 4.53, Data from a Faulting Address controls a subsequent Write Address starting at image00400000+0x000000000001dcfc.
Affected Software
1 affected component
IrfanView IrfanView=4.53
Event History
Sep 25, 2019
CVE Published
via MITRE·05:51 PM
Data Sourced
via MITRE·05:51 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-16887?
CVE-2019-16887 has a CVSS score indicating a high severity vulnerability that can lead to potential arbitrary code execution.
2
How do I fix CVE-2019-16887?
To fix CVE-2019-16887, upgrade to the latest version of IrfanView as it addresses the security vulnerability.
3
What software versions are affected by CVE-2019-16887?
CVE-2019-16887 specifically affects IrfanView version 4.53.
4
What type of vulnerability is CVE-2019-16887?
CVE-2019-16887 is an arbitrary code execution vulnerability that arises from improper handling of memory addresses.
5
Can CVE-2019-16887 be exploited remotely?
Yes, CVE-2019-16887 can potentially be exploited remotely via malicious image files.