Arbitrary Code Execution Vulnerability in IrfanView with TOOLS Plugin
CVE-2017-9915
7.8HIGH
What is CVE-2017-9915?
IrfanView versions 4.44 (32bit) with the TOOLS plugin 4.50 suffer from a vulnerability that can allow attackers to execute arbitrary code or induce a denial of service by utilizing specially crafted files. This issue arises from a read access violation, specifically at the point of data manipulation referenced within the ntdll module. Users of the affected versions are strongly advised to update to mitigate potential risks.
