User Mode Write AV Vulnerability in FastStone Image Viewer Software by FastStone
CVE-2018-11703

7.8HIGH

Key Information:

Vendor

Faststone

Vendor
CVE Published:
20 June 2018

What is CVE-2018-11703?

In FastStone Image Viewer version 6.2, a vulnerability exists that allows for user mode write access violations when handling malformed JPEG files. This flaw occurs within the FSViewer.exe process, and can be triggered by an unsuspecting user opening a crafted image. Attackers might exploit this vulnerability to cause denial of service (DoS) conditions or potentially other unspecified impacts, compromising the security and availability of the affected systems.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.