CVE-2020-23565: High severity irfanview vulnerability
Published Nov 5, 2021
·Updated
Irfanview v4.53 allows attackers to execute arbitrary code via a crafted JPEG 2000 file. Related to a "Data from Faulting Address controls Branch Selection starting at JPEG2000!ShowPlugInSaveOptionsW+0x0000000000032850".
Affected Software
1 affected component
IrfanView IrfanView=4.53
Event History
Nov 5, 2021
CVE Published
via MITRE·04:09 PM
Data Sourced
via MITRE·04:09 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-23565?
CVE-2020-23565 has a critical severity rating due to its potential for arbitrary code execution.
2
How do I fix CVE-2020-23565?
To fix CVE-2020-23565, users should upgrade to a patched version of IrfanView that addresses this vulnerability.
3
What types of files are involved in CVE-2020-23565?
CVE-2020-23565 specifically involves crafted JPEG 2000 files that can exploit the vulnerability.
4
What versions of IrfanView are affected by CVE-2020-23565?
CVE-2020-23565 affects IrfanView version 4.53.
5
What impact does CVE-2020-23565 have on users?
CVE-2020-23565 can allow attackers to execute arbitrary code on a user's system, posing significant security risks.