Get a Pentest and security assessment of your IT network.

Advisories

IrfanView PSD Image Parsing Sign-Extension Vulnerability

Secunia Research has discovered a vulnerability in IrfanView, which can be exploited by malicious people to compromise a user’s system. The vulnerability is caused by a sign-extension error when processing certain PSD images, which can be exploited to cause a heap-based buffer overflow by tricking a user into opening a specially crafted PSD file. Successful exploitation may allow execution of arbitrary code. Version 4.25 is affected.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/89499/secunia-irfanpsd.txt

Source: https://packetstormsecurity.com/files/89499/IrfanView-PSD-Image-Parsing-Sign-Extension-Vulnerability.html

Related posts
Advisories

Ubuntu Security Notice 93-1

Advisories

Secunia Security Advisory 18018

Advisories

Secunia Security Advisory 20784

Advisories

Secunia Security Advisory 23739