Описание
Stack-based buffer overflow in Foxit Reader before 2.3 build 2912 allows user-assisted remote attackers to execute arbitrary code via a crafted PDF file, related to the util.printf JavaScript function and floating point specifiers in format strings.
Ссылки
- Third Party Advisory
- Broken Link
- Third Party AdvisoryUS Government Resource
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Permissions Required
- Third Party Advisory
- Broken Link
- Third Party AdvisoryUS Government Resource
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Permissions Required
Уязвимые конфигурации
Конфигурация 1Версия до 2.3 (включая)
Одно из
cpe:2.3:a:foxitsoftware:foxit_reader:*:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_reader:2.0:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_reader:2.2:*:*:*:*:*:*:*
EPSS
Процентиль: 93%
0.09965
Низкий
9.3 Critical
CVSS2
Дефекты
CWE-119
Связанные уязвимости
github
почти 4 года назад
Stack-based buffer overflow in Foxit Reader before 2.3 build 2912 allows user-assisted remote attackers to execute arbitrary code via a crafted PDF file, related to the util.printf JavaScript function and floating point specifiers in format strings.
EPSS
Процентиль: 93%
0.09965
Низкий
9.3 Critical
CVSS2
Дефекты
CWE-119