Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Integer overflow in the FORMATS Plugin before 4.23 for IrfanView allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a large XPM file that triggers a heap-based buffer overflow.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IrfanView 插件FORMATS 整数溢出漏洞
Vulnerability Description
IrfanView是波黑软件开发者Irfan Skiljan所研发的一款图片浏览器,它支持图片浏览、图片编辑、图片格式转换等。 IrfanView的Formats插件在处理设置有某些维度的XPM文件时存在可导致堆溢出的整数溢出漏洞。如果用户受骗打开了特制的XPM文件就可以出发这个溢出,导致以当前用户权限执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A