CVE-2024-44915: Medium severity irfanview vulnerability
Published Aug 28, 2024
·Updated
An issue in the component EXR!ReadEXR+0x4eef0 of Irfanview v4.67.1.0 allows attackers to cause an access violation via a crafted EXR file. This vulnerability can lead to a Denial of Service (DoS).
Affected Software
1 affected component
IrfanView Exr Irfanview=4.67.1
Event History
Aug 28, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-44915?
CVE-2024-44915 has a severity rating that suggests it can lead to a Denial of Service (DoS) condition.
2
What software is affected by CVE-2024-44915?
CVE-2024-44915 specifically affects IrfanView version 4.67.1.0.
3
How do I fix CVE-2024-44915?
To mitigate the effects of CVE-2024-44915, it is recommended to update IrfanView to a patched version or avoid opening crafted EXR files.
4
What type of attack can CVE-2024-44915 facilitate?
CVE-2024-44915 can be exploited by attackers to cause an access violation, leading to a Denial of Service.
5
What is the component vulnerable in CVE-2024-44915?
The vulnerable component in CVE-2024-44915 is EXR!ReadEXR at offset 0x4eef0.