CVE-2023-26974: Buffer Overflow
Published Apr 4, 2023
·Updated
Irfanview v4.62 allows a user-mode write access violation via a crafted JPEG 2000 file starting at JPEG2000+0x0000000000001bf0.
Affected Software
1 affected component
IrfanView IrfanView=4.62
Event History
Apr 4, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-26974?
CVE-2023-26974 has been categorized as a high severity vulnerability due to its potential to cause a user-mode write access violation.
2
How do I fix CVE-2023-26974?
To resolve CVE-2023-26974, users should upgrade to the latest version of Irfanview that addresses this vulnerability.
3
What software is affected by CVE-2023-26974?
CVE-2023-26974 affects IrfanView version 4.62.
4
What types of files are associated with CVE-2023-26974?
CVE-2023-26974 is associated with JPEG 2000 files that can exploit the vulnerability.
5
Can CVE-2023-26974 be exploited remotely?
Yes, CVE-2023-26974 can potentially be exploited by opening a malicious JPEG 2000 file.