CVE-2007-1867 – IrfanView 3.99 - '.ani' Local Buffer Overflow
https://notcve.org/view.php?id=CVE-2007-1867
Buffer overflow in IrfanView 3.99 allows remote attackers to execute arbitrary code via a crafted animated cursor (ANI) file. Desbordamiento de búfer en IrfanView 3.99 permite a atacantes remotos ejecutar código de su elección mediante un fichero de cursor animado (ANI) manipulado. • https://www.exploit-db.com/exploits/3692 https://www.exploit-db.com/exploits/3648 http://secunia.com/advisories/24725 http://www.securityfocus.com/bid/23262 http://www.vupen.com/english/advisories/2007/1210 https://exchange.xforce.ibmcloud.com/vulnerabilities/33386 •
CVE-2007-1245
https://notcve.org/view.php?id=CVE-2007-1245
IrfanView 3.99 allows remote attackers to cause a denial of service (application crash) via a malformed WMF file. IrfanView 3.99 permite a atacantes remotos provocar una denegación de servicio (caída de la aplicación) mediante un fichero WMF mal formado. • http://osvdb.org/34487 http://securityvulns.com/Qdocument120.html http://securityvulns.com/news/IrfanView/WMF/DoS.html http://www.securityfocus.com/archive/1/461373/100/0/threaded • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2006-4374 – IrfanView 3.98 - '.ANI' Image File Denial of Service
https://notcve.org/view.php?id=CVE-2006-4374
IrfanView 3.98 (with plugins) allows user-assisted attackers to cause a denial of service (application crash) via a crafted ANI image file, possibly due to a buffer overflow. IrfanView 3.98 (con plugins) permite a atacantes con la intervención del usuario provocar una denegación de servicio (caída de aplicación) mediante una imagen ANI manipulada, posiblemente debido a un desbordamiento de búfer. • https://www.exploit-db.com/exploits/28369 http://securityreason.com/securityalert/1457 http://www.securityfocus.com/archive/1/442876/100/200/threaded http://www.securityfocus.com/bid/19452 https://exchange.xforce.ibmcloud.com/vulnerabilities/28360 •
CVE-2006-4231
https://notcve.org/view.php?id=CVE-2006-4231
IrfanView 3.98 (with plugins) allows remote attackers to cause a denial of service (application crash) via a crafted CUR image file. IrfanView 3.98 (con extensiones) permite a atacantes remotos provocar una denegación de servicio (caída de aplicación) mediante un archivo de imagen CUR manipulado. • http://securityreason.com/securityalert/1414 http://www.securityfocus.com/archive/1/443187/100/0/threaded https://exchange.xforce.ibmcloud.com/vulnerabilities/28377 •
CVE-1999-1112 – IrfanView32 3.0.7 - Image File Buffer Overflow
https://notcve.org/view.php?id=CVE-1999-1112
Buffer overflow in IrfanView32 3.07 and earlier allows attackers to execute arbitrary commands via a long string after the "8BPS" image type in a Photo Shop image header. • https://www.exploit-db.com/exploits/19610 http://stud4.tuwien.ac.at/~e9227474/main2.html http://www.securityfocus.com/archive/1/34066 http://www.securityfocus.com/bid/781 https://exchange.xforce.ibmcloud.com/vulnerabilities/3549 •