9.3
CVSSv2

CVE-2009-0197

Published: 09/04/2009 Updated: 11/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Integer overflow in the FORMATS Plugin prior to 4.23 for IrfanView allows remote malicious users to execute arbitrary code or cause a denial of service (application crash) via a large XPM file that triggers a heap-based buffer overflow.

Vulnerable Product Search on Vulmon Subscribe to Product

irfanview formats

irfanview formats 4.20

irfanview formats 4.10

irfanview formats 4.00