An issue was discovered in Foxit Reader and PhantomPDF before 9.4 on Windows. They allowed Denial of Service (application crash) via image data, because two bytes are written to the end of the allocated memory without judging whether this will cause corruption.
References
Link | Resource |
---|---|
https://www.foxitsoftware.com/support/security-bulletins.php | Patch Vendor Advisory |
https://www.foxitsoftware.com/support/security-bulletins.php | Patch Vendor Advisory |
Configurations
History
21 Nov 2024, 04:44
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.foxitsoftware.com/support/security-bulletins.php - Patch, Vendor Advisory |
Information
Published : 2019-01-03 23:29
Updated : 2024-11-21 04:44
NVD link : CVE-2019-5005
Mitre link : CVE-2019-5005
CVE.ORG link : CVE-2019-5005
JSON object : View
Products Affected
foxitsoftware
- phantompdf
- foxit_reader
microsoft
- windows
CWE
CWE-787
Out-of-bounds Write