Denial of Service Vulnerability in IrfanView PDF Plugin
CVE-2017-15263

7.8HIGH

Key Information:

Vendor

Irfanview

Vendor
CVE Published:
11 October 2017

What is CVE-2017-15263?

IrfanView version 4.44 (32bit) with PDF plugin version 4.43 is susceptible to a denial of service attack when processing specially crafted PDF files. Attackers can exploit this vulnerability, which involves improper handling of data from faulting addresses, leading to disruptions in application functionality. It is essential for users to be aware and update to the latest versions to mitigate this risk.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.