Get a Pentest and security assessment of your IT network.

Advisories

IrfanView PSD Image Parsing Sign-Extension Vulnerability

Secunia Research has discovered a vulnerability in IrfanView, which can be exploited by malicious people to compromise a user’s system. The vulnerability is caused by a sign-extension error when processing certain PSD images, which can be exploited to cause a heap-based buffer overflow by tricking a user into opening a specially crafted PSD file. Successful exploitation may allow execution of arbitrary code. Version 4.25 is affected.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/89499/secunia-irfanpsd.txt

Source: https://packetstormsecurity.com/files/89499/IrfanView-PSD-Image-Parsing-Sign-Extension-Vulnerability.html

Related posts
Advisories

crossZone.txt

Advisories

Secunia Security Advisory 16900

Advisories

Secunia Security Advisory 19793

Advisories

Secunia Security Advisory 22534