Faststone
Faststone Image Viewer: vulnerabilidades y CVE
Faststone Image Viewer tiene 38 vulnerabilidades publicadas, 6 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE38
Últimos 12 meses6
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-101205 | Baja (2.1) | 0.23% | — | 28 sept 2026 | A vulnerability was determined in FastStone Image Viewer up to 8.3. This impacts an unknown function of the component PCX Decoder. This manipulation causes out-of-bounds read. The attack may be initiated remotely. The… |
| CVE-2026-101204 | Baja (2.1) | 0.23% | — | 28 sept 2026 | A vulnerability was found in FastStone Image Viewer up to 8.3. This affects an unknown function of the file FSViewer.exe of the component TGA Image Handler. The manipulation results in out-of-bounds read. The attack can… |
| CVE-2026-101203 | Baja (2.1) | 0.23% | — | 28 sept 2026 | A vulnerability has been found in FastStone Image Viewer up to 8.3. The impacted element is an unknown function of the component 1bpp RLE Decoder. The manipulation leads to out-of-bounds write. The attack can be… |
| CVE-2026-101202 | Baja (2.1) | 0.23% | — | 28 sept 2026 | A flaw has been found in FastStone Image Viewer up to 8.3. The affected element is an unknown function of the component TGA Image Handler. Executing a manipulation can lead to out-of-bounds write. It is possible to… |
| CVE-2026-30041 | Alta (7.5) | 0.60% | — | 26 jun 2026 | An integer overflow in the PSD parser compnent of FastStone Image Viewer v8.3 allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via supplying a crafted PSD file. |
| CVE-2026-30040 | Media (6.5) | 0.46% | — | 26 jun 2026 | A heap overflow in the FSViewer.exe process of FastStone Image Viewer v8.3 allows attackers to cause a execute arbitrary code in the context of the current process via supplying a crafted JPEG 2000 (JP2) file. |
| CVE-2024-9114 | Alta (7.8) | 0.40% | — | 22 nov 2024 | FastStone Image Viewer GIF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of FastStone Image Viewer.… |
| CVE-2024-9113 | Alta (7.8) | 0.32% | — | 22 nov 2024 | FastStone Image Viewer TGA File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of FastStone Image Viewer.… |
| CVE-2024-9112 | Alta (7.8) | 0.32% | — | 22 nov 2024 | FastStone Image Viewer PSD File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of FastStone Image Viewer.… |
| CVE-2022-36947 | Crítica (9.8) | 2.8% | — | 18 ago 2022 | Unsafe Parsing of a PNG tRNS chunk in FastStone Image Viewer through 7.5 results in a stack buffer overflow. |
| CVE-2021-26237 | Alta (7.8) | 2.7% | — | 18 mar 2021 | FastStone Image Viewer <= 7.5 is affected by a user mode write access violation at 0x00402d7d, triggered when a user opens or views a malformed CUR file that is mishandled by FSViewer.exe. Attackers could exploit this… |
| CVE-2021-26235 | Alta (7.8) | 1.1% | — | 18 mar 2021 | FastStone Image Viewer <= 7.5 is affected by a user mode write access violation near NULL at 0x005bdfc9, triggered when a user opens or views a malformed CUR file that is mishandled by FSViewer.exe. Attackers could… |
| CVE-2021-26234 | Alta (7.8) | 1.1% | — | 18 mar 2021 | FastStone Image Viewer <= 7.5 is affected by a user mode write access violation at 0x00402d8a, triggered when a user opens or views a malformed CUR file that is mishandled by FSViewer.exe. Attackers could exploit this… |
| CVE-2021-26233 | Alta (7.8) | 1.1% | — | 18 mar 2021 | FastStone Image Viewer <= 7.5 is affected by a user mode write access violation near NULL at 0x005bdfcb, triggered when a user opens or views a malformed CUR file that is mishandled by FSViewer.exe. Attackers could… |
| CVE-2021-26236 | Alta (7.8) | 2.0% | — | 18 mar 2021 | FastStone Image Viewer v.<= 7.5 is affected by a Stack-based Buffer Overflow at 0x005BDF49, affecting the CUR file parsing functionality (BITMAPINFOHEADER Structure, 'BitCount' file format field), that will end up… |
| CVE-2020-35845 | Alta (7.8) | 0.89% | — | 26 ene 2021 | FastStone Image Viewer 7.5 has an out-of-bounds write (via a crafted image file) at FSViewer.exe+0x96cf. |
| CVE-2020-35844 | Alta (7.8) | 0.92% | — | 26 ene 2021 | FastStone Image Viewer 7.5 has an out-of-bounds write (via a crafted image file) at FSViewer.exe+0xbe9c4. |
| CVE-2020-35843 | Media (5.5) | 0.75% | — | 26 ene 2021 | FastStone Image Viewer 7.5 has an out-of-bounds write (via a crafted image file) at FSViewer.exe+0x956e. |
| CVE-2019-13246 | Alta (7.8) | 1.2% | — | 4 jul 2019 | FastStone Image Viewer 7.0 has a User Mode Write AV starting at image00400000+0x00000000001a9601. |
| CVE-2019-13245 | Alta (7.8) | 1.2% | — | 4 jul 2019 | FastStone Image Viewer 7.0 has a User Mode Write AV starting at image00400000+0x00000000001a95b1. |
| CVE-2019-13244 | Alta (7.8) | 1.2% | — | 4 jul 2019 | FastStone Image Viewer 7.0 has a User Mode Write AV starting at image00400000+0x0000000000002d7d. |
| CVE-2018-15817 | Media (5.5) | 0.83% | — | 26 mar 2019 | FastStone Image Viewer 6.5 has a Read Access Violation on Block Data Move starting at image00400000+0x0000000000002d63 via a crafted image file. |
| CVE-2018-15816 | Media (5.5) | 0.83% | — | 26 mar 2019 | FastStone Image Viewer 6.5 has a Read Access Violation on Block Data Move starting at image00400000+0x0000000000002d7d via a crafted image file. |
| CVE-2018-15815 | Media (5.5) | 0.83% | — | 26 mar 2019 | FastStone Image Viewer 6.5 has an Exception Handler Chain Corrupted issue starting at image00400000+0x00000000003ef68a via a crafted image file. |
| CVE-2018-15814 | Media (5.5) | 0.83% | — | 26 mar 2019 | FastStone Image Viewer 6.5 has a User Mode Write AV starting at image00400000+0x00000000001cb509 via a crafted image file. |
| CVE-2018-15813 | Media (5.5) | 0.83% | — | 26 mar 2019 | FastStone Image Viewer 6.5 has a User Mode Write AV starting at image00400000+0x00000000000e1237 via a crafted image file. |
| CVE-2018-11707 | Alta (7.8) | 0.84% | — | 20 jun 2018 | FastStone Image Viewer 6.2 has a User Mode Read and Execute AV at 0x0057898e, triggered when the user opens a malformed JPEG file that is mishandled by FSViewer.exe. Attackers could exploit this issue for DoS (Access… |
| CVE-2018-11706 | Alta (7.8) | 0.79% | — | 20 jun 2018 | FastStone Image Viewer 6.2 has a User Mode Write AV at 0x00578dd8, triggered when the user opens a malformed JPEG file that is mishandled by FSViewer.exe. Attackers could exploit this issue for DoS (Access Violation) or… |
| CVE-2018-11705 | Alta (7.8) | 0.79% | — | 20 jun 2018 | FastStone Image Viewer 6.2 has a User Mode Write AV at 0x00578cc4, triggered when the user opens a malformed JPEG file that is mishandled by FSViewer.exe. Attackers could exploit this issue for DoS (Access Violation) or… |
| CVE-2018-11704 | Alta (7.8) | 0.79% | — | 20 jun 2018 | FastStone Image Viewer 6.2 has a User Mode Write AV at 0x00402d7d, triggered when the user opens a malformed JPEG file that is mishandled by FSViewer.exe. Attackers could exploit this issue for DoS (Access Violation) or… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.