CVE-2020-23556: High severity irfanview vulnerability
Published Sep 16, 2022
·Updated
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!GetPlugInInfo+0x0000000000007e28.
Affected Software
1 affected component
IrfanView IrfanView=4.54
Event History
Sep 16, 2022
CVE Published
via MITRE·02:48 AM
Data Sourced
via MITRE·02:48 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-23556?
The severity of CVE-2020-23556 is high with a CVSS score of 7.8.
2
What software is affected by CVE-2020-23556?
IrfanView version 4.54 is affected by CVE-2020-23556.
3
How can I fix CVE-2020-23556?
There is no known fix available for CVE-2020-23556. It is recommended to update to the latest version of IrfanView when a fix becomes available.
4
Where can I find more information about CVE-2020-23556?
You can find more information about CVE-2020-23556 on the GitHub page of nhiephon's research and on the IrfanView plugins page.
5
What is the Common Weakness Enumeration (CWE) ID for CVE-2020-23556?
The Common Weakness Enumeration (CWE) ID for CVE-2020-23556 is CWE-787.