Foxit Reader before 8.3.1 and PhantomPDF before 8.3.1 have an Arbitrary Write vulnerability, which allows remote attackers to execute arbitrary code via a crafted document.
Any condition where the attacker has the ability to write an arbitrary value to an arbitrary location, often as the result of a buffer overflow.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/99499 | third party advisory vdb entry |
http://www.securitytracker.com/id/1039113 | vdb entry |
https://www.foxitsoftware.com/support/security-bulletins.php | vendor advisory |