CVE-2007-1867 – IrfanView 3.99 - '.ani' Local Buffer Overflow
https://notcve.org/view.php?id=CVE-2007-1867
Buffer overflow in IrfanView 3.99 allows remote attackers to execute arbitrary code via a crafted animated cursor (ANI) file. Desbordamiento de búfer en IrfanView 3.99 permite a atacantes remotos ejecutar código de su elección mediante un fichero de cursor animado (ANI) manipulado. • https://www.exploit-db.com/exploits/3692 https://www.exploit-db.com/exploits/3648 http://secunia.com/advisories/24725 http://www.securityfocus.com/bid/23262 http://www.vupen.com/english/advisories/2007/1210 https://exchange.xforce.ibmcloud.com/vulnerabilities/33386 •
CVE-2007-1245
https://notcve.org/view.php?id=CVE-2007-1245
IrfanView 3.99 allows remote attackers to cause a denial of service (application crash) via a malformed WMF file. IrfanView 3.99 permite a atacantes remotos provocar una denegación de servicio (caída de la aplicación) mediante un fichero WMF mal formado. • http://osvdb.org/34487 http://securityvulns.com/Qdocument120.html http://securityvulns.com/news/IrfanView/WMF/DoS.html http://www.securityfocus.com/archive/1/461373/100/0/threaded • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •