irfanView 4.56 contains an error processing parsing files of type .pcx. Which leads to out-of-bounds writing at i_view32+0xdb60.
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.
Link | Tags |
---|---|
https://twitter.com/DmitriyMelikov | third party advisory |
https://github.com/DmitryMeD/pentesting/blob/main/IrfanView%204.56.md | third party advisory exploit |