CVE-2022-36947
https://notcve.org/view.php?id=CVE-2022-36947
18 Aug 2022 — Unsafe Parsing of a PNG tRNS chunk in FastStone Image Viewer through 7.5 results in a stack buffer overflow. Un análisis no seguro en una partición de PNG tRNS en FastStone Image Viewer versiones hasta 7.5, resulta en un desbordamiento del búfer de la pila. • https://wid.cert-bund.de/portal/wid/kurzinformationen • CWE-787: Out-of-bounds Write •
CVE-2021-26237
https://notcve.org/view.php?id=CVE-2021-26237
18 Mar 2021 — FastStone Image Viewer <= 7.5 is affected by a user mode write access violation at 0x00402d7d, triggered when a user opens or views a malformed CUR file that is mishandled by FSViewer.exe. Attackers could exploit this issue for a Denial of Service (DoS) or possibly to achieve code execution. FastStone Image Viewer versiones anteriores incluyendo a 7.5, está afectado por una infracción de acceso de escritura en modo de usuario en 0x00402d7d, que se desencadena cuando un usuario abre o visualiza un archivo CU... • https://voidsec.com/advisories/cve-2021-26237-faststone-image-viewer-v-7-5-user-mode-write-access-violation • CWE-787: Out-of-bounds Write •
CVE-2021-26235
https://notcve.org/view.php?id=CVE-2021-26235
18 Mar 2021 — FastStone Image Viewer <= 7.5 is affected by a user mode write access violation near NULL at 0x005bdfc9, triggered when a user opens or views a malformed CUR file that is mishandled by FSViewer.exe. Attackers could exploit this issue for a Denial of Service (DoS) or possibly to achieve code execution. FastStone Image Viewer versiones anteriores incluyendo a 7.5, está afectado por una infracción de acceso de escritura en modo de usuario cercana a NULL en 0x005bdfc9, que se desencadena cuando un usuario abre ... • https://voidsec.com/advisories/cve-2021-26235-faststone-image-viewer-v-7-5-user-mode-write-access-violation • CWE-476: NULL Pointer Dereference •
CVE-2021-26234
https://notcve.org/view.php?id=CVE-2021-26234
18 Mar 2021 — FastStone Image Viewer <= 7.5 is affected by a user mode write access violation at 0x00402d8a, triggered when a user opens or views a malformed CUR file that is mishandled by FSViewer.exe. Attackers could exploit this issue for a Denial of Service (DoS) or possibly to achieve code execution. FastStone Image Viewer versiones anteriores incluyendo a 7.5, está afectado por una infracción de acceso de escritura en modo de usuario en 0x00402d8a, que se desencadena cuando un usuario abre o visualiza un archivo CU... • https://voidsec.com/advisories/cve-2021-26234-faststone-image-viewer-v-7-5-user-mode-write-access-violation • CWE-787: Out-of-bounds Write •
CVE-2021-26233
https://notcve.org/view.php?id=CVE-2021-26233
18 Mar 2021 — FastStone Image Viewer <= 7.5 is affected by a user mode write access violation near NULL at 0x005bdfcb, triggered when a user opens or views a malformed CUR file that is mishandled by FSViewer.exe. Attackers could exploit this issue for a Denial of Service (DoS) or possibly to achieve code execution. FastStone Image Viewer versiones anteriores incluyendo a 7.5, está afectado por una infracción de acceso de escritura en modo de usuario cercana a NULL en 0x005bdfcb, que se desencadena cuando un usuario abre ... • https://voidsec.com/advisories/cve-2021-26233-faststone-image-viewer-v-7-5-user-mode-write-access-violation • CWE-787: Out-of-bounds Write •
CVE-2021-26236
https://notcve.org/view.php?id=CVE-2021-26236
18 Mar 2021 — FastStone Image Viewer v.<= 7.5 is affected by a Stack-based Buffer Overflow at 0x005BDF49, affecting the CUR file parsing functionality (BITMAPINFOHEADER Structure, 'BitCount' file format field), that will end up corrupting the Structure Exception Handler (SEH). Attackers could exploit this issue to achieve code execution when a user opens or views a malformed/specially crafted CUR file. FastStone Image Viewer versiones anteriores incluyendo a 7.5, está afectado por un desbordamiento del búfer en la región... • https://voidsec.com/advisories/cve-2021-26236-faststone-image-viewer-v-7-5-stack-based-buffer-overflow • CWE-787: Out-of-bounds Write •
CVE-2007-1942 – FastStone Image Viewer 2.9/3.6 - '.bmp' Image Handling Memory Corruption
https://notcve.org/view.php?id=CVE-2007-1942
11 Apr 2007 — Integer overflow in FastStone Image Viewer 2.9 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a crafted BMP image, as demonstrated by wh3intof.bmp and wh4intof.bmp. Desbordamiento de entero en FastStone Image Viewer 2.9 permite a atacantes dependientes del contexto provocar denegación de servicio y posiblemente ejecutar código de su elección a través de una imagen BMP manipulada, como se demostró con wh3intof.bmp y wh4intof.bmp. • https://www.exploit-db.com/exploits/29816 •