Vulnerable Systems:
* IrfanView 4.33 Format PlugIn TTF
Technical details
The vulnerability is caused due to a boundary error when processing TTF font names and can be exploited to cause a stack-based buffer overflow via a specially crafted font file.
The Code
http://protekresearchlab.com/exploits/PRL-2012-11.ttf
Disclosure Timeline:
2012-05-27 - Vulnerability reported to secunia
2012-06-01 - Coordinated public release of advisory