Product:

Foxit_reader

(Foxitsoftware)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 372
Date Id Summary Products Score Patch Annotated
2016-04-22 CVE-2016-4063 Use-after-free vulnerability in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to execute arbitrary code via an object with a revision number of -1 in a PDF document. Foxit_reader, Phantompdf 7.8
2016-04-22 CVE-2016-4062 Foxit Reader and PhantomPDF before 7.3.4 on Windows improperly report format errors recursively, which allows remote attackers to cause a denial of service (application hang) via a crafted PDF. Foxit_reader, Phantompdf 5.5
2016-04-22 CVE-2016-4061 Foxit Reader and PhantomPDF before 7.3.4 on Windows allow remote attackers to cause a denial of service (application crash) via a crafted content stream. Foxit_reader, Phantompdf 7.5
2016-04-22 CVE-2016-4060 Use-after-free vulnerability in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to cause a denial of service (application crash) via unspecified vectors. Foxit_reader, Phantompdf 7.5
2016-04-22 CVE-2016-4059 Use-after-free vulnerability in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to execute arbitrary code via a crafted FlateDecode stream in a PDF document. Foxit_reader, Phantompdf 7.8
2017-04-04 CVE-2016-3740 Heap-based buffer overflow in the CreateFXPDFConvertor function in ConvertToPdf_x86.dll in Foxit Reader 7.3.4.311 allows remote attackers to execute arbitrary code via a large SamplesPerPixel value in a crafted TIFF image that is mishandled during PDF conversion. This is fixed in 8.0. Foxit_reader 7.8
2016-04-13 CVE-2015-8843 The Foxit Cloud Update Service (FoxitCloudUpdateService) in Foxit Reader 6.1 through 6.2.x and 7.x before 7.2.2, when an update to the Cloud plugin is available, allows local users to gain privileges by writing crafted data to a shared memory region, which triggers memory corruption. Foxit_reader 7.4
2015-12-16 CVE-2015-8580 Multiple use-after-free vulnerabilities in the (1) Print method and (2) App object handling in Foxit Reader before 7.2.2 and Foxit PhantomPDF before 7.2.2 allow remote attackers to execute arbitrary code via a crafted PDF document. Foxit_reader, Phantompdf N/A
2015-05-01 CVE-2015-3633 Foxit Reader, Enterprise Reader, and PhantomPDF before 7.1.5 allow remote attackers to cause a denial of service (memory corruption and crash) via vectors related to digital signatures. Enterprise_reader, Foxit_reader, Phantompdf N/A
2015-05-01 CVE-2015-3632 Foxit Reader, Enterprise Reader, and PhantomPDF before 7.1.5 allow remote attackers to cause a denial of service (memory corruption and crash) via a crafted GIF in a PDF file. Enterprise_reader, Foxit_reader, Phantompdf N/A