A large out-of-bounds read on the heap vulnerability in Foxit PDF Reader can potentially be abused for information disclosure. Combined with another vulnerability, it can be used to leak heap memory layout and in bypassing ASLR.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/93799 | |
http://www.talosintelligence.com/reports/TALOS-2016-0201/ | Technical Description Third Party Advisory |
http://www.securityfocus.com/bid/93799 | |
http://www.talosintelligence.com/reports/TALOS-2016-0201/ | Technical Description Third Party Advisory |
Configurations
History
21 Nov 2024, 02:59
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/bid/93799 - | |
References | () http://www.talosintelligence.com/reports/TALOS-2016-0201/ - Technical Description, Third Party Advisory | |
CVSS |
v2 : v3 : |
v2 : 4.3
v3 : 6.8 |
Information
Published : 2017-01-06 21:59
Updated : 2024-11-21 02:59
NVD link : CVE-2016-8334
Mitre link : CVE-2016-8334
CVE.ORG link : CVE-2016-8334
JSON object : View
Products Affected
foxitsoftware
- reader
CWE
CWE-125
Out-of-bounds Read