Buffer overflow in IrfanView before 4.37, when a multibyte-character directory name is used, allows user-assisted remote attackers to execute arbitrary code via a crafted file that is incorrectly handled by the Thumbnail tooltips feature in the Thumbnails window.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2013-12-27 20:53
Updated : 2013-12-30 08:48
NVD link : CVE-2013-6932
Mitre link : CVE-2013-6932
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
irfanview
- irfanview