Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Stack-based buffer overflow in the JPEG2000 plugin in IrfanView PlugIns before 4.33 allows remote attackers to execute arbitrary code via a JPEG2000 (JP2) file with a crafted Quantization Default (QCD) marker segment.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IrfanView JPEG-2000插件缓冲区溢出漏洞
Vulnerability Description
IrfanView是波黑软件开发者Irfan Skiljan所研发的一款图片浏览器,它支持图片浏览、图片编辑、图片格式转换等。 IrfanView JPEG-2000插件中存在远程基于栈的缓冲区溢出漏洞,该漏洞源于对用户提供的数据在复制到一个没有足够空间的存储缓冲区前未进行边界检查。远程攻击者可利用该漏洞在受影响应用程序的上下文中执行任意代码,攻击失败将导致拒绝服务。IrfanView JPEG-2000插件4.32版本中存在该漏洞,其他版本也可能受影响。
CVSS Information
N/A
Vulnerability Type
N/A