CVE-2007-1948
HIGH 9.3EPSS 8.3%
Buffer overflow in IrfanView 3.99 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via the (1) xoffset or (2) yoffset RLE command, or (3) large non-RLE encoded blocks in a crafted BMP image, as demonstrated by rle8of3.bmp and rle8of4.bmp.
- CVSS v2.0
- 9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C - EPSS
- 8.26% chance of exploitation in the next 30 days, 94th percentile
- Published
- 2007-04-11
- Updated
- 2024-08-07