Stack-based buffer overflow in IrfanView 3.99 and 4.00 allows user-assisted remote attackers to execute arbitrary code via a crafted palette (.pal) file.Referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/37222http://secunia.com/secunia_research/2007-71/advisory/http://www.securityfocus.com/bid/26089http://www.vupen.com/english/advisories/2007/3528http://secunia.com/advisories/26619http://www.irfanview.com/main_history.htm