Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Reader
(Foxitsoftware)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 259 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2021-01-07 | CVE-2018-20315 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a race condition that can cause a stack-based buffer overflow or an out-of-bounds read. | Phantompdf, Reader | 8.1 | ||
2021-01-07 | CVE-2018-20309 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyGetAppEdition race condition that can cause a stack-based buffer overflow or an out-of-bounds read. | Phantompdf, Reader | 8.1 | ||
2021-01-07 | CVE-2018-20314 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyCheckLicence race condition that can cause a stack-based buffer overflow or an out-of-bounds read. | Phantompdf, Reader | 8.1 | ||
2021-01-07 | CVE-2018-20312 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can cause a stack-based buffer overflow or an out-of-bounds read, a different issue than CVE-2018-20310 because of a different opcode. | Phantompdf, Reader | 8.1 | ||
2021-01-07 | CVE-2018-20313 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyPreviewAction race condition that can cause a stack-based buffer overflow or an out-of-bounds read. | Phantompdf, Reader | 8.1 | ||
2021-01-07 | CVE-2018-20311 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyCPDFAction race condition that can cause a stack-based buffer overflow or an out-of-bounds read. | Phantompdf, Reader | 8.1 | ||
2021-01-07 | CVE-2018-20310 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can cause a stack-based buffer overflow or an out-of-bounds read. | Phantompdf, Reader | 8.1 | ||
2020-09-04 | CVE-2020-12247 | In Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can obtain sensitive information from an out-of-bounds read because a text-string index continues to be used after splitting a string into two parts. A crash may also occur. | Phantompdf, Reader | N/A | ||
2020-09-04 | CVE-2020-12248 | In Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can execute arbitrary code via a heap-based buffer overflow because dirty image-resource data is mishandled. | Phantompdf, Reader | N/A | ||
2020-09-04 | CVE-2020-11493 | In Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can obtain sensitive information about an uninitialized object because of direct transformation from PDF Object to Stream without concern for a crafted XObject. | Phantompdf, Reader | N/A |