Out-of-Bounds Write Vulnerability in FastStone Image Viewer by FastStone
CVE-2020-35843

5.5MEDIUM

Key Information:

Vendor

Faststone

Vendor
CVE Published:
26 January 2021

What is CVE-2020-35843?

FastStone Image Viewer 7.5 is susceptible to an out-of-bounds write vulnerability, which can be exploited via specially crafted image files. This flaw occurs in the FSViewer.exe component, allowing attackers to manipulate how memory is accessed, potentially leading to arbitrary code execution. Users should be cautious when handling untrusted image files to mitigate associated security risks.

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.