Vulnerabilities > Irfanview > Irfanview

DATE CVE VULNERABILITY TITLE RISK
2017-07-05 CVE-2017-10731 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Irfanview 4.44
IrfanView version 4.44 (32bit) allows attackers to execute arbitrary code or cause a denial of service via a crafted .rle file, related to a "User Mode Write AV starting at FORMATS!GetPlugInInfo+0x0000000000007d80."
network
irfanview CWE-119
6.8
2017-07-05 CVE-2017-10730 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Irfanview 4.44
IrfanView version 4.44 (32bit) allows attackers to execute arbitrary code or cause a denial of service via a crafted .rle file, related to a "User Mode Write AV starting at FORMATS!GetPlugInInfo+0x0000000000007d96."
network
irfanview CWE-119
6.8
2017-07-05 CVE-2017-10729 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Irfanview 4.44
IrfanView version 4.44 (32bit) allows attackers to execute arbitrary code or cause a denial of service via a crafted .rle file, related to a "User Mode Write AV starting at ntdll_77df0000!RtlpWaitOnCriticalSection+0x0000000000000121."
network
irfanview CWE-119
6.8
2017-06-21 CVE-2017-2813 Integer Overflow or Wraparound vulnerability in Irfanview 4.44
An exploitable integer overflow vulnerability exists in the JPEG 2000 parser functionality of IrfanView 4.44.
network
irfanview CWE-190
6.8
2017-04-30 CVE-2017-7721 Improper Input Validation vulnerability in Irfanview FPX and Irfanview
IrfanView version 4.44 (32bit) with FPX Plugin before 4.45 has an Access Violation and crash in processing a FlashPix (.FPX) file.
network
irfanview CWE-20
6.8
2014-02-14 CVE-2013-5351 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Irfanview
Heap-based buffer overflow in IrfanView before 4.37 allows remote attackers to execute arbitrary code via the LZW code stream in a GIF file.
network
low complexity
irfanview CWE-119
7.5
2013-12-28 CVE-2013-6932 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Irfanview
Buffer overflow in IrfanView before 4.37, when a multibyte-character directory name is used, allows user-assisted remote attackers to execute arbitrary code via a crafted file that is incorrectly handled by the Thumbnail tooltips feature in the Thumbnails window.
network
high complexity
irfanview CWE-119
7.6
2012-11-17 CVE-2012-5904 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Irfanview
Heap-based buffer overflow in IrfanView before 4.33 allows remote attackers to execute arbitrary code via a crafted RLE compressed bitmap file such as a DIB, RLE, or BMP image.
network
irfanview CWE-119
6.8
2012-10-25 CVE-2011-5233 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Irfanview
Heap-based buffer overflow in IrfanView before 4.32 allows remote attackers to execute arbitrary code via crafted "Rows Per Strip" and "Samples Per Pixel" values in a TIFF image file.
network
irfanview CWE-119
4.3
2012-07-05 CVE-2012-3585 Buffer Errors vulnerability in Irfanview Plugins 4.33
Heap-based buffer overflow in jpeg_ls.dll in the Jpeg_LS (aka JLS) plugin in the formats plugins in IrfanView PlugIns before 4.34 allows remote attackers to execute arbitrary code via a crafted JLS file.
network
irfanview CWE-119
critical
9.3