Buffer overflow in IrfanView - CVE-2017-10735
Published: July 5, 2017 / Updated: August 8, 2020
IrfanView
Detailed vulnerability description
The vulnerability allows a remote non-authenticated attacker to execute arbitrary code.
IrfanView version 4.44 (32bit) might allow attackers to cause a denial of service or possibly have unspecified other impact via a crafted .rle file, related to "Data from Faulting Address controls Branch Selection starting at ntdll_77df0000!RtlpFreeHeap+0x00000000000003ca."