CVE-2017-2823: Poweriso

High severity, CVSS 7.8. EPSS: 9.4% chance of exploitation in the next 30 days.

A use-after-free vulnerability exists in the .ISO parsing functionality of PowerISO 6.8. A specially crafted .ISO file can cause a vulnerability resulting in potential code execution. An attacker can send a specific .ISO file to trigger this vulnerability.

Affected products

Published 2017-05-24. Last modified 2026-06-17.