Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-frgh-pv7v-cq38

Опубликовано: 04 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Heap-based buffer overflow in the FlashPix PlugIn before 4.3.4.0 for IrfanView might allow remote attackers to execute arbitrary code via a .fpx file containing a crafted FlashPix image that is not properly handled during decompression.

Heap-based buffer overflow in the FlashPix PlugIn before 4.3.4.0 for IrfanView might allow remote attackers to execute arbitrary code via a .fpx file containing a crafted FlashPix image that is not properly handled during decompression.

EPSS

Процентиль: 96%
0.29017
Средний

Дефекты

CWE-119

Связанные уязвимости

nvd
почти 14 лет назад

Heap-based buffer overflow in the FlashPix PlugIn before 4.3.4.0 for IrfanView might allow remote attackers to execute arbitrary code via a .fpx file containing a crafted FlashPix image that is not properly handled during decompression.

EPSS

Процентиль: 96%
0.29017
Средний

Дефекты

CWE-119