CVE-2020-23549: High severity irfanview vulnerability
Published Oct 28, 2021
·Updated
IrfanView 4.54 allows attackers to cause a denial of service or possibly other unspecified impacts via a crafted .cr2 file, related to a "Data from Faulting Address controls Branch Selection starting at FORMATS!GetPlugInInfo+0x00000000000047f6".
Affected Software
1 affected component
IrfanView IrfanView=4.54
Event History
Oct 28, 2021
CVE Published
via MITRE·09:09 PM
Data Sourced
via MITRE·09:09 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-23549?
CVE-2020-23549 has been classified as a denial of service vulnerability.
2
How do I fix CVE-2020-23549?
To fix CVE-2020-23549, update to the latest version of IrfanView that addresses this vulnerability.
3
Which versions of IrfanView are affected by CVE-2020-23549?
CVE-2020-23549 specifically affects IrfanView version 4.54.
4
What type of exploits can be performed using CVE-2020-23549?
CVE-2020-23549 can be exploited to cause a denial of service or possibly other unspecified impacts.
5
What file type is associated with the CVE-2020-23549 vulnerability?
The vulnerability CVE-2020-23549 is associated with crafted .cr2 files.