Description
Heap-based buffer overflow in the FlashPix PlugIn before 4.3.4.0 for IrfanView might allow remote attackers to execute arbitrary code via a .fpx file containing a crafted FlashPix image that is not properly handled during decompression.
Affected products
- IrfanView / flashpix_plugin4.33
- IrfanView / flashpix_plugin4.32 – 4.32