CVE-2024-44914: Medium severity irfanview vulnerability
Published Aug 28, 2024
·Updated
An issue in the component EXR!ReadEXR+0x3df50 of Irfanview v4.67.1.0 allows attackers to cause an access violation via a crafted EXR file. This vulnerability can lead to a Denial of Service (DoS).
Affected Software
1 affected component
IrfanView Exr Irfanview=4.67.1
Event History
Aug 28, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-44914?
CVE-2024-44914 is classified as a vulnerability that can cause a Denial of Service (DoS).
2
How do I fix CVE-2024-44914?
To fix CVE-2024-44914, update IrfanView to the latest version beyond 4.67.1.0 to mitigate the vulnerability.
3
What impact does CVE-2024-44914 have on IrfanView users?
CVE-2024-44914 can result in an access violation, which may lead to an application crash for users of IrfanView v4.67.1.0.
4
What type of files are involved in CVE-2024-44914?
CVE-2024-44914 is triggered by crafting and opening specific EXR files in IrfanView.
5
Are older versions of IrfanView affected by CVE-2024-44914?
Yes, older versions of IrfanView prior to version 4.67.1.0 are also affected by CVE-2024-44914.