Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-38563

Опубликовано: 11 авг. 2021
Источник: nvd
CVSS3: 9.8
CVSS2: 7.5
EPSS Низкий

Описание

An issue was discovered in Foxit PDF Reader before 11.0.1 and PDF Editor before 11.0.1. It mishandles situations in which an array size (derived from a /Size entry) is smaller than the maximum indirect object number, and thus there is an attempted incorrect array access (leading to a NULL pointer dereference, or out-of-bounds read or write).

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:foxit:pdf_reader:*:*:*:*:*:*:*:*
Версия до 11.0.0.0510 (включая)
cpe:2.3:a:foxitsoftware:pdf_editor:*:*:*:*:*:*:*:*
Версия до 11.0.0.0510 (включая)

EPSS

Процентиль: 5%
0.00023
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-129

Связанные уязвимости

github
больше 3 лет назад

An issue was discovered in Foxit PDF Reader before 11.0.1 and PDF Editor before 11.0.1. It mishandles situations in which an array size (derived from a /Size entry) is smaller than the maximum indirect object number, and thus there is an attempted incorrect array access (leading to a NULL pointer dereference, or out-of-bounds read or write).

EPSS

Процентиль: 5%
0.00023
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-129