Foxit.Reader.JPXDecode.Heap.Overflow

description-logoDescription

This indicates an attack attempt against a Memory Corruption vulnerability in Foxit Reader and PhantomPDF.
The vulnerability is due to an error when the vulnerable software processes specially crafted PDF files with malformed JPXDecode streams. A remote attacker may be able to exploit this to cause a denial of service condition.

affected-products-logoAffected Products

Foxit Reader 8.0.0.624 and earlier on Windows
Foxit Reader 2.0.0.0625 and earlier on Mac OS X
Foxit Reader 1.1.1.0602 and earlier on Linux
Foxit PhantomPDF 8.0.1.628 and earlier on Windows

Impact logoImpact

Denial of Service: Remote attackers can crash vulnerable systems.

recomended-action-logoRecommended Actions

Apply the most recent upgrade or patch from the vendor.
https://www.foxitsoftware.com/support/security-bulletins.php

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)