CVE-2017-15763

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
22/10/2017
Last modified:
20/04/2025

Description

IrfanView 4.50 - 64bit with BabaCAD4Image plugin version 1.3 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to "Data from Faulting Address controls subsequent Write Address starting at BabaCAD4Image!ShowPlugInOptions+0x000000000001eca0."

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:irfanview:irfanview:4.50:*:*:*:*:x64:*:*
cpe:2.3:a:irfanview:babacad4image:1.3:*:*:*:*:*:*:*