Buffer overflow in IrfanView - CVE-2017-15264
Published: October 11, 2017 / Updated: August 8, 2020
IrfanView
Detailed vulnerability description
The vulnerability allows a remote non-authenticated attacker to execute arbitrary code.
IrfanView version 4.44 (32bit) allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .tif file, related to "Data from Faulting Address is used as one or more arguments in a subsequent Function Call starting at image00000000_00400000+0x00000000000236e4."