PT-2015-1146 · Foxit · Foxit Reader+2

Francis Provencher

·

Published

2015-05-01

·

Updated

2017-01-03

·

CVE-2015-3632

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Foxit Reader, Enterprise Reader, and PhantomPDF versions prior to 7.1.5
Description The issue is caused by a memory handling error, allowing remote attackers to cause a denial of service (memory corruption and crash) via a crafted GIF in a PDF file. This can be exploited by an attacker to disrupt the service.
Recommendations For versions prior to 7.1.5, update to version 7.1.5 or later to resolve the issue.

Exploit

Fix

DoS

Buffer Overflow

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-10031
CVE-2015-3632

Affected Products

Enterprise Reader
Foxit Reader
Phantompdf