Overview
Foxit Reader contains a buffer overflow vulnerability that may allow an attacker to execute arbitrary code.
Description
Foxit Reader is a PDF reader that is available on multiple operating systems. From the Secuia Research advisory Foxit Reader "util.printf()" Buffer Overflow: |
Impact
A remote, unauthenticated attacker may be able to execute arbitrary code. |
Solution
Foxit Reader version 2.3 build 2912 was released to address this issue. |
Do not open untrusted PDF files |
Vendor Information
CVSS Metrics
| Group | Score | Vector |
|---|---|---|
| Base | ||
| Temporal | ||
| Environmental |
References
Acknowledgements
This vulnerability was published by Dyon Balding from Secunia Research.
This document was written by Ryan Giobbi.
Other Information
| CVE IDs: | CVE-2008-1104 |
| Severity Metric: | 1.69 |
| Date Public: | 2008-05-20 |
| Date First Published: | 2008-05-27 |
| Date Last Updated: | 2008-05-27 19:55 UTC |
| Document Revision: | 22 |