IrfanView 4.50 - 64bit with CADImage plugin version 12.0.0.5 allows malicious users to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to "Data from Faulting Address controls subsequent Write Address starting at CADIMAGE+0x00000000000042d5."
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
irfanview irfanview 4.50 |
||
irfanview cadimage 12.0.0.5 |