6.8
CVSSv2

CVE-2012-0025

Published: 02/11/2012 Updated: 30/11/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Double free vulnerability in the Free_All_Memory function in jpeg/dectile.c in libfpx prior to 1.3.1-1, as used in the FlashPix PlugIn 4.2.2.0 for IrfanView, allows remote malicious users to cause a denial of service (crash) via a crafted FPX image.

Vulnerable Product Search on Vulmon Subscribe to Product

irfanview flashpix plugin 4.2.2.0

Exploits

##################################################################################### Application: IrfanView FlashPix PlugIn Double-Free Vulnerability Platforms: Windows Exploitation: Remote code execution Secunia Number: SA47322 {PRL}: 2011-11 Author: Francis Provencher (Protek Research Lab's) Website: wwwprotekresear ...