And, be sure to update Ifranview to Version 4.27 *ASAP*:
IrfanView PSD Image Parsing Two Vulnerabilities
http://secunia.com/advisories/39036/
Release Date - 2010-05-12
Last Update - 2010-05-17
Criticality level - Highly critical
" Description
Secunia Research has discovered two vulnerabilities in IrfanView, which
can be exploited by malicious people to compromise a user's system.
1) A sign-extension error when parsing certain PSD images can be
exploited to cause a heap-based buffer overflow by tricking a user into
opening a specially crafted PSD file.
2) A boundary error when processing certain RLE compressed PSD images
can be exploited to cause a heap-based buffer overflow by tricking a
user into opening a specially crafted PSD file.
Successful exploitation of the vulnerabilities may allow execution of
arbitrary code.
The vulnerabilities are confirmed in version 4.25. Other versions may
also be affected. "
MowGreen
================
*-343-* FDNY
Never Forgotten
================
banthecheck.com
"Security updates should *never* have *non-security content* prechecked
Tim Slattery wrote:
> Mint wrote:
>
>> I would like to make a .reg file that will show Open With Irfanview
>> for use with .bmp files.
>> Can someone help me?
>
> Just open Irfanview and choose Options|Set file associations... The
> third choice on the list is BMP/DIB. Check that and click OK.
>