CVE-2012-0025

Severity CVSS v4.0:
Pending analysis
Type:
CWE-399 Resource Management Errors
Publication date:
02/11/2012
Last modified:
11/04/2025

Description

Double free vulnerability in the Free_All_Memory function in jpeg/dectile.c in libfpx before 1.3.1-1, as used in the FlashPix PlugIn 4.2.2.0 for IrfanView, allows remote attackers to cause a denial of service (crash) via a crafted FPX image.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:irfanview:flashpix_plugin:4.2.2.0:*:*:*:*:*:*:*