An issue was discovered in Foxit Reader and PhantomPDF before 9.4 on Windows. They allowed Denial of Service (application crash) via image data, because two bytes are written to the end of the allocated memory without judging whether this will cause corruption.
2019-01-03T23:29:00.337
2024-11-21T04:44:10.070
Modified
CVSSv3.0: 5.5 (MEDIUM)
AV:N/AC:M/Au:N/C:N/I:N/A:P
8.6
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | foxitsoftware | foxit_reader | < 9.4 | Yes |
Operating System | microsoft | windows | - | No |
Application | foxitsoftware | phantompdf | < 9.4 | Yes |
Operating System | microsoft | windows | - | No |