CVE-2017-8455
- EPSS 0.51%
- Veröffentlicht 03.05.2017 05:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Foxit Reader before 8.2.1 and PhantomPDF before 8.2.1 have an out-of-bounds read that allows remote attackers to obtain sensitive information or possibly execute arbitrary code via a crafted font in a PDF document.
CVE-2016-3740
- EPSS 1.3%
- Veröffentlicht 04.04.2017 18:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Heap-based buffer overflow in the CreateFXPDFConvertor function in ConvertToPdf_x86.dll in Foxit Reader 7.3.4.311 allows remote attackers to execute arbitrary code via a large SamplesPerPixel value in a crafted TIFF image that is mishandled during PD...
CVE-2017-6883
- EPSS 0.13%
- Veröffentlicht 14.03.2017 09:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The ConvertToPDF plugin in Foxit Reader before 8.2.1 and PhantomPDF before 8.2.1 on Windows, when the gflags app is enabled, allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted TIFF image. The...
CVE-2017-5556
- EPSS 0.59%
- Veröffentlicht 23.01.2017 07:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The ConvertToPDF plugin in Foxit Reader before 8.2 and PhantomPDF before 8.2 on Windows, when the gflags app is enabled, allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted JPEG image. The vul...
CVE-2016-4065
- EPSS 0.27%
- Veröffentlicht 22.04.2016 15:59:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ConvertToPDF plugin in Foxit Reader and PhantomPDF before 7.3.4 on Windows, when the gflags app is enabled, allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted (1) JPEG, (2) GIF, or (3) BM...
CVE-2016-4064
- EPSS 1.26%
- Veröffentlicht 22.04.2016 15:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in the XFA forms handling functionality in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to execute arbitrary code via a crafted remerge call.
CVE-2016-4063
- EPSS 1.54%
- Veröffentlicht 22.04.2016 15:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to execute arbitrary code via an object with a revision number of -1 in a PDF document.
CVE-2016-4062
- EPSS 0.04%
- Veröffentlicht 22.04.2016 15:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
Foxit Reader and PhantomPDF before 7.3.4 on Windows improperly report format errors recursively, which allows remote attackers to cause a denial of service (application hang) via a crafted PDF.
CVE-2016-4061
- EPSS 0.18%
- Veröffentlicht 22.04.2016 15:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
Foxit Reader and PhantomPDF before 7.3.4 on Windows allow remote attackers to cause a denial of service (application crash) via a crafted content stream.
CVE-2016-4060
- EPSS 0.14%
- Veröffentlicht 22.04.2016 15:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to cause a denial of service (application crash) via unspecified vectors.