CVE-2007-1948

Irfanview - Buffer Overflow

Title source: rule

Description

Buffer overflow in IrfanView 3.99 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via the (1) xoffset or (2) yoffset RLE command, or (3) large non-RLE encoded blocks in a crafted BMP image, as demonstrated by rle8of3.bmp and rle8of4.bmp.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Ivan Fratric · cdoswindows
https://www.exploit-db.com/exploits/29819

Scores

EPSS 0.0623
EPSS Percentile 90.9%

Details

Status published
Products (1)
irfanview/irfanview 3.99
Published Apr 11, 2007
Tracked Since Feb 18, 2026