Overview
Foxit Reader contains a buffer overflow vulnerability that may allow an attacker to execute arbitrary code.
Description
Foxit Reader is a PDF reader that is available on multiple operating systems. From the Secuia Research advisory Foxit Reader "util.printf()" Buffer Overflow: |
Impact
A remote, unauthenticated attacker may be able to execute arbitrary code. |
Solution
Foxit Reader version 2.3 build 2912 was released to address this issue. |
Do not open untrusted PDF files |
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | ||
Temporal | ||
Environmental |
References
Acknowledgements
This vulnerability was published by Dyon Balding from Secunia Research.
This document was written by Ryan Giobbi.
Other Information
CVE IDs: | CVE-2008-1104 |
Severity Metric: | 1.69 |
Date Public: | 2008-05-20 |
Date First Published: | 2008-05-27 |
Date Last Updated: | 2008-05-27 19:55 UTC |
Document Revision: | 22 |