IrfanView: Critical security hole in a plugin
Posted: April 17th, 2012 | Author: gaytelaviv | Filed under: Software | Tags: Critical, IrfanView, plugin, security holeSecurity researcher Francis Provencher became aware of a critical vulnerability in an official plugin for image viewing software IrfanView. A new version of the plugin has been released.
The developer of IrfanView offer so-called plug-in package that can be used to integrate additional functions into the desired application. Was on systems in the past, the entire plug-in installed package version 4.33, so the users of a vulnerability is exposed.
The vulnerable plugin is used for viewing video content in the format Flashpix. Even opening a malicious file accordingly may be sufficient to inject malicious code on victims’ systems.
The announcements of the security services’ Secunia ‘According to the private security advisory released, the gap is to be regarded as very critical, as the discoverer of the gap has also published exploit code.
All users of IrfanView, which also rely on the plugin package is recommended to immediately release the aufzuspielen 4:34 Flashpix of plug-ins. About the Official Website of IrfanView is this update available for download.