1457Third-party advisory
http://securityreason.com/securityalert/1457 CVE-2006-4374
IrfanView 3.98 - '.ANI' Image File Denial of Service
Record summary
CVE-2006-4374 has a selected CVSS score of 2.6; EIP currently links 1 catalogued exploit.
Description
IrfanView 3.98 (with plugins) allows user-assisted attackers to cause a denial of service (application crash) via a crafted ANI image file, possibly due to a buffer overflow.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBIrfanView 3.98 - '.ANI' Image File Denial of ServiceExploitDB exploitby sehatoNot analyzed1 file
References
520060809 InfanView 3.98 (with plugins) - Access violation at processing images ANI filesmailing list
http://www.securityfocus.com/archive/1/442876/100/200/threaded 19452vdb entry
http://www.securityfocus.com/bid/19452 irfanview-ani-image-dos(28360)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/28360 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2006-4374