PT-2006-5179 · Irfanview · Irfanview

Sehato

·

Published

2006-08-26

·

Updated

2018-10-17

·

CVE-2006-4374

CVSS v2.0

2.6

Low

VectorAV:N/AC:H/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions IrfanView version 3.98
Description The issue allows user-assisted attackers to cause a denial of service, resulting in an application crash, via a crafted ANI image file. This could be due to a buffer overflow.
Recommendations For IrfanView version 3.98, avoid using the software to open ANI image files from untrusted sources until a patch is available. As a temporary workaround, consider disabling the handling of ANI files to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-4374

Affected Products

Irfanview