CVE-2011-0332
published 2011-02-25CVE-2011-0332: Integer overflow in Foxit Reader before 4.3.1.0218 and Foxit Phantom before 2.3.3.1112 allows remote attackers to execute arbitrary code via crafted ICC chunks…
PriorityP346critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
6.19%
92.7th percentile
Integer overflow in Foxit Reader before 4.3.1.0218 and Foxit Phantom before 2.3.3.1112 allows remote attackers to execute arbitrary code via crafted ICC chunks in a PDF file, which triggers a heap-based buffer overflow.
Affected
23 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| foxitsoftware | foxit_phantom | <= 2.3 | — |
| foxitsoftware | foxit_phantom | — | — |
| foxitsoftware | foxit_phantom | — | — |
| foxitsoftware | foxit_phantom | — | — |
| foxitsoftware | foxit_phantom | — | — |
| foxitsoftware | foxit_phantom | — | — |
| foxitsoftware | foxit_phantom | — | — |
| foxitsoftware | foxit_phantom | — | — |
| foxitsoftware | foxit_phantom | — | — |
| foxitsoftware | foxit_reader | <= 4.3 | — |
| foxitsoftware | foxit_reader | — | — |
| foxitsoftware | foxit_reader | — | — |
| foxitsoftware | foxit_reader | — | — |
| foxitsoftware | foxit_reader | — | — |
| foxitsoftware | foxit_reader | — | — |
| foxitsoftware | foxit_reader | — | — |
| foxitsoftware | foxit_reader | — | — |
| foxitsoftware | foxit_reader | — | — |
| foxitsoftware | foxit_reader | — | — |
| foxitsoftware | foxit_reader | — | — |
| foxitsoftware | foxit_reader | — | — |
| foxitsoftware | foxit_reader | — | — |
| foxitsoftware | foxit_reader | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No writeups or analysis indexed.
http://secunia.com/advisories/43329http://secunia.com/advisories/43440http://secunia.com/secunia_research/2011-14/http://www.foxitsoftware.com/pdf/reader/security_bulletins.php#memoryhttp://www.securitytracker.com/id?1025129http://www.vupen.com/english/advisories/2011/0508http://secunia.com/advisories/43329http://secunia.com/advisories/43440http://secunia.com/secunia_research/2011-14/http://www.foxitsoftware.com/pdf/reader/security_bulletins.php#memoryhttp://www.securitytracker.com/id?1025129http://www.vupen.com/english/advisories/2011/0508
2011-02-25
Published