CVE-2020-26535

An issue was discovered in Foxit Reader and PhantomPDF before 10.1. If TslAlloc attempts to allocate thread local storage but obtains an unacceptable index value, V8 throws an exception that leads to a write access violation (and read access violation).
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:foxitsoftware:foxit_reader:*:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:phantompdf:*:*:*:*:*:*:*:*

History

21 Nov 2024, 05:20

Type Values Removed Values Added
References () https://www.foxitsoftware.com/support/security-bulletins.html - Patch, Vendor Advisory () https://www.foxitsoftware.com/support/security-bulletins.html - Patch, Vendor Advisory

Information

Published : 2020-10-02 08:15

Updated : 2024-11-21 05:20


NVD link : CVE-2020-26535

Mitre link : CVE-2020-26535

CVE.ORG link : CVE-2020-26535


JSON object : View

Products Affected

foxitsoftware

  • phantompdf
  • foxit_reader
CWE
CWE-787

Out-of-bounds Write