Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
IrfanView before 4.27 does not properly handle an unspecified integer variable during processing of PSD images, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted image file that triggers a heap-based buffer overflow, related to a "sign-extension error."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IrfanView '.psd'格式文件处理远程缓冲区溢出漏洞
Vulnerability Description
IrfanView是波黑软件开发者Irfan Skiljan所研发的一款图片浏览器,它支持图片浏览、图片编辑、图片格式转换等。 在处理PSD图像时,IrfanView无法正确验证未明整数变量,远程攻击者可通过特制图像文件触发基于堆的缓冲区溢出,并引发拒绝服务(应用程序崩溃),与"符号扩展错误"相关。
CVSS Information
N/A
Vulnerability Type
N/A