Vulnerabilities > Faststone > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-01-26 CVE-2020-35843 Out-of-bounds Write vulnerability in Faststone Image Viewer 7.5
FastStone Image Viewer 7.5 has an out-of-bounds write (via a crafted image file) at FSViewer.exe+0x956e.
local
low complexity
faststone CWE-787
5.5
2019-03-26 CVE-2018-15817 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Faststone Image Viewer 6.5
FastStone Image Viewer 6.5 has a Read Access Violation on Block Data Move starting at image00400000+0x0000000000002d63 via a crafted image file.
local
low complexity
faststone CWE-119
5.5
2019-03-26 CVE-2018-15816 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Faststone Image Viewer 6.5
FastStone Image Viewer 6.5 has a Read Access Violation on Block Data Move starting at image00400000+0x0000000000002d7d via a crafted image file.
local
low complexity
faststone CWE-119
5.5
2019-03-26 CVE-2018-15815 Improper Check for Unusual or Exceptional Conditions vulnerability in Faststone Image Viewer 6.5
FastStone Image Viewer 6.5 has an Exception Handler Chain Corrupted issue starting at image00400000+0x00000000003ef68a via a crafted image file.
local
low complexity
faststone CWE-754
5.5
2019-03-26 CVE-2018-15814 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Faststone Image Viewer 6.5
FastStone Image Viewer 6.5 has a User Mode Write AV starting at image00400000+0x00000000001cb509 via a crafted image file.
local
low complexity
faststone CWE-119
5.5
2019-03-26 CVE-2018-15813 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Faststone Image Viewer 6.5
FastStone Image Viewer 6.5 has a User Mode Write AV starting at image00400000+0x00000000000e1237 via a crafted image file.
local
low complexity
faststone CWE-119
5.5
2017-02-21 CVE-2017-6078 Improper Input Validation vulnerability in Faststone Maxview 3.0/3.1
FastStone MaxView 3.0 and 3.1 allows user-assisted attackers to cause a denial of service (application crash) via a malformed BMP image with a crafted biSize field in the BITMAPINFOHEADER section.
local
low complexity
faststone CWE-20
5.5