CVE-2017-15755
https://notcve.org/view.php?id=CVE-2017-15755
IrfanView 4.50 - 64bit with BabaCAD4Image plugin version 1.3 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .dwg file, related to "Data from Faulting Address controls Branch Selection starting at verifier!AVrfpDphFindBusyMemoryNoCheck+0x0000000000000091." IrfanView 4.50 - 64bit, con la versión del plugin BabaCAD4Image 1.3, permite que los atacantes provoquen una denegación de servicio o, posiblemente, otro impacto sin especificar mediante un archivo .dwg manipulado. Esta vulnerabilidad está relacionada con "Data from Faulting Address controls Branch Selection starting at verifier!AVrfpDphFindBusyMemoryNoCheck+0x0000000000000091". • https://github.com/wlinzi/security_advisories/tree/master/CVE-2017-15755 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •