Out-of-Bounds Read Vulnerability in FastStone Image Viewer by FastStone Soft
CVE-2026-101204

5.3MEDIUM

Key Information:

Vendor

Faststone

Vendor
CVE Published:
28 September 2026

What is CVE-2026-101204?

A vulnerability has been identified in FastStone Image Viewer prior to version 8.4. This issue impacts the TGA Image Handler component found in the FSViewer.exe file, causing an out-of-bounds read scenario. Attackers can exploit this vulnerability remotely, potentially leading to unauthorized information disclosure. The vendor was made aware of this issue but has not provided a response to the disclosure.

Affected Version(s)

Image Viewer 8.0

Image Viewer 8.1

Image Viewer 8.2

References

CVSS V4

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

jonzab (VulDB User)
VulDB CNA Team
.