Vulnerability Description
Buffer Overflow vulnerability in IrfanView 32bit v.4.66 allows a local attacker to cause a denial of service via a crafted file. Affected component is IrfanView 32bit 4.66 with plugin formats.dll.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://github.com/kirito999/IrfanViewBug
- https://mediaside.net/irfanview-italia/2024/04/12/4-67-data-di-rilascio-5-aprile
- https://www.fosshub.com/IrfanView.html?dwl=iview466_plugins.zip
- https://www.fosshub.com/IrfanView.html?dwl=iview466_setup.exe
FAQ
What is CVE-2024-31007?
CVE-2024-31007 is a vulnerability with a CVSS score of 5.5 (MEDIUM). Buffer Overflow vulnerability in IrfanView 32bit v.4.66 allows a local attacker to cause a denial of service via a crafted file. Affected component is IrfanView 32bit 4.66 with plugin formats.dll.
How severe is CVE-2024-31007?
CVE-2024-31007 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-31007?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.