Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown

CVE-2012-4337

Disclosure Date: August 23, 2012 (last updated October 04, 2023)
Foxit Reader before 5.3 on Windows XP and Windows 7 allows remote attackers to execute arbitrary code via a PDF document with a crafted attachment that triggers calculation of a negative number during processing of cross references.
0
Attacker Value
Unknown

CVE-2011-3691

Disclosure Date: September 27, 2011 (last updated October 04, 2023)
Untrusted search path vulnerability in Foxit Reader before 5.0.2.0718 allows local users to gain privileges via a Trojan horse dwmapi.dll, dwrite.dll, or msdrm.dll in the current working directory.
0
Attacker Value
Unknown

CVE-2011-1908

Disclosure Date: June 24, 2011 (last updated October 04, 2023)
Integer overflow in the Type 1 font decoder in the FreeType engine in Foxit Reader before 4.0.0.0619 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted font in a PDF document.
0
Attacker Value
Unknown

CVE-2011-0332

Disclosure Date: February 25, 2011 (last updated October 04, 2023)
Integer overflow in Foxit Reader before 4.3.1.0218 and Foxit Phantom before 2.3.3.1112 allows remote attackers to execute arbitrary code via crafted ICC chunks in a PDF file, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2009-0690

Disclosure Date: June 23, 2009 (last updated October 04, 2023)
The Foxit JPEG2000/JBIG2 Decoder add-on before 2.0.2009.616 for Foxit Reader 3.0 before Build 1817 does not properly handle a negative value for the stream offset in a JPEG2000 (aka JPX) stream, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted PDF file that triggers an out-of-bounds read.
0
Attacker Value
Unknown

CVE-2008-1104

Disclosure Date: May 21, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in Foxit Reader before 2.3 build 2912 allows user-assisted remote attackers to execute arbitrary code via a crafted PDF file, related to the util.printf JavaScript function and floating point specifiers in format strings.
0