PT-2021-20322 · Foxit · Foxit Reader+1
Published
2021-08-11
·
Updated
2021-08-12
·
CVE-2021-33793
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
Foxit Reader versions prior to 10.1.4
PhantomPDF versions prior to 10.1.4
Description:
The issue arises from the mishandling of the Cross-Reference table during Office document conversion, leading to an out-of-bounds write.
Recommendations:
For Foxit Reader versions prior to 10.1.4, update to version 10.1.4 or later.
For PhantomPDF versions prior to 10.1.4, update to version 10.1.4 or later.
Fix
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Foxit Reader
Phantompdf