CVE-2011-0332

Integer overflow in Foxit Reader before 4.3.1.0218 and Foxit Phantom before 2.3.3.1112 allows remote attackers to execute arbitrary code via crafted ICC chunks in a PDF file, which triggers a heap-based buffer overflow.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:foxitsoftware:foxit_reader:*:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_reader:2.0:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_reader:2.2:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_reader:2.3:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_reader:3.0:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_reader:3.1:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_reader:3.1.1:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_reader:3.1.3:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_reader:3.1.4:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_reader:3.2:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_reader:3.2.1:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_reader:3.3.1:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_reader:4.0:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_reader:4.1.1:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:foxitsoftware:foxit_phantom:*:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_phantom:1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_phantom:2.0:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_phantom:2.1:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_phantom:2.1.1:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_phantom:2.2:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_phantom:2.2.1:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_phantom:2.2.3:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_phantom:2.2.4:*:*:*:*:*:*:*

History

21 Nov 2024, 01:23

Type Values Removed Values Added
References () http://secunia.com/advisories/43329 - () http://secunia.com/advisories/43329 -
References () http://secunia.com/advisories/43440 - () http://secunia.com/advisories/43440 -
References () http://secunia.com/secunia_research/2011-14/ - () http://secunia.com/secunia_research/2011-14/ -
References () http://www.foxitsoftware.com/pdf/reader/security_bulletins.php#memory - Patch, Vendor Advisory () http://www.foxitsoftware.com/pdf/reader/security_bulletins.php#memory - Patch, Vendor Advisory
References () http://www.securitytracker.com/id?1025129 - Third Party Advisory, VDB Entry () http://www.securitytracker.com/id?1025129 - Third Party Advisory, VDB Entry
References () http://www.vupen.com/english/advisories/2011/0508 - Not Applicable () http://www.vupen.com/english/advisories/2011/0508 - Not Applicable

Information

Published : 2011-02-25 19:00

Updated : 2024-11-21 01:23


NVD link : CVE-2011-0332

Mitre link : CVE-2011-0332

CVE.ORG link : CVE-2011-0332


JSON object : View

Products Affected

foxitsoftware

  • foxit_phantom
  • foxit_reader
CWE
CWE-189

Numeric Errors