CVE-2026-30041

No Score

Description

An integer overflow vulnerability exists in the PSD parser of FastStone Image Viewer, versions 8.3 and earlier. The vulnerability is caused by a lack of proper validation for the height value in PSD files, leading to a subsequent heap-based buffer overflow. Successful exploitation could allow a remote attacker to execute arbitrary code or cause a persistent denial-of-service (crash) via a crafted PSD file.

References

https://kb.cert.org/vuls/id/936962

Details

Source: Mitre, NVD

Published: 2026-06-22