CVE-2020-23552: High severity irfanview vulnerability
Published Sep 16, 2022
·Updated
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!GetPlugInInfo+0x0000000000007e62.
Affected Software
1 affected component
IrfanView IrfanView=4.54
Event History
Sep 16, 2022
CVE Published
via MITRE·02:44 AM
Data Sourced
via MITRE·02:44 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-23552?
CVE-2020-23552 has a medium severity rating due to its potential for user-mode write access violations.
2
How do I fix CVE-2020-23552?
To mitigate CVE-2020-23552, users should update IrfanView to version 4.55 or later.
3
What are the impacts of CVE-2020-23552 on affected systems?
CVE-2020-23552 can lead to application instability and unauthorized modifications to memory.
4
Which versions of IrfanView are affected by CVE-2020-23552?
CVE-2020-23552 specifically impacts IrfanView version 4.54.
5
Is there a workaround for CVE-2020-23552?
While upgrading is the best solution, disabling plugins may serve as a temporary workaround for CVE-2020-23552.