CVE-2015-2790
published 2015-03-30CVE-2015-2790: Foxit Reader, Enterprise Reader, and PhantomPDF before 7.1 allow remote attackers to cause a denial of service (memory corruption and crash) via a crafted (1)…
PriorityP334medium4.3CVSS 2.0
AVNACMAuNCNINAP
EXPLOIT
EPSS
24.52%
97.6th percentile
Foxit Reader, Enterprise Reader, and PhantomPDF before 7.1 allow remote attackers to cause a denial of service (memory corruption and crash) via a crafted (1) Ubyte Size in a DataSubBlock structure or (2) LZWMinimumCodeSize in a GIF image.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| foxitsoftware | enterprise_reader | <= 7.0.6.1126 | — |
| foxitsoftware | foxit_reader | <= 7.0.6.1126 | — |
| foxitsoftware | phantompdf | <= 7.0.6.1126 | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Trigger vector is a crafted GIF file with a malformed Ubyte Size field in a DataSubBlock structure, delivered to Foxit Reader/Enterprise Reader/PhantomPDF before 7.1 on Windows. ↗
- →Trigger vector is a crafted GIF file with a malformed LZWMinimumCodeSize field, delivered to Foxit Reader/Enterprise Reader/PhantomPDF before 7.1 on Windows. ↗
- ·Vulnerability confirmed in Foxit Reader 7.x; other versions may also be affected. Fixed in Foxit Reader 7.1, Foxit Enterprise Reader 7.1, and Foxit PhantomPDF 7.1 released 2015-03-09. ↗
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Exploit-DB
Foxit Products GIF Conversion - 'DataSubBlock' Memory Corruption
exploitdb·2015-03-11
CVE-2015-2790 Foxit Products GIF Conversion - 'DataSubBlock' Memory Corruption
Foxit Products GIF Conversion - 'DataSubBlock' Memory Corruption
---
#####################################################################################
Application: Foxit Products GIF Conversion Memory Corruption Vulnerabilities (DataSubBlock)
Platforms: Windows
Versions: The vulnerability is confirmed in version Foxit Reader 7.x. Other versions may also be affected.
Secunia: SA63346
{PRL}: 2015-02
Author: Francis Provencher (Protek Research Lab’s)
Website: http://www.protekresearchlab.com/
Twitter: @ProtekResearch
#####################################################################################
1) Introduction
2) Report Timeline
3) Technical details
4) POC
#####################################################################################
1) Introduction
Foxit Rea
Exploit-DB
Foxit Products GIF Conversion - 'LZWMinimumCodeSize' Memory Corruption
exploitdb·2015-03-11
CVE-2015-2790 Foxit Products GIF Conversion - 'LZWMinimumCodeSize' Memory Corruption
Foxit Products GIF Conversion - 'LZWMinimumCodeSize' Memory Corruption
---
#####################################################################################
Application: Foxit Products GIF Conversion Memory Corruption Vulnerabilities (LZWMinimumCodeSize)
Platforms: Windows
Versions: The vulnerability is confirmed in version Foxit Reader 7.x. Other versions may also be affected.
Secunia: SA63346
{PRL}: 2015-01
Author: Francis Provencher (Protek Research Lab’s)
Website: http://www.protekresearchlab.com/
Twitter: @ProtekResearch
#####################################################################################
1) Introduction
2) Report Timeline
3) Technical details
4) POC
#####################################################################################
1) Introduction
No writeups or analysis indexed.
http://protekresearchlab.com/PRL-2015-02/http://protekresearchlab.com/prl-2015-01prl-foxit-products-gif-conversion-memory-corruption-vulnerabilities-lzwminimumcodesize/http://securitytracker.com/id/1031878http://www.exploit-db.com/exploits/36334http://www.exploit-db.com/exploits/36335http://www.foxitsoftware.com/support/security_bulletins.php#FRD-23http://www.foxitsoftware.com/support/security_bulletins.php#FRD-24http://www.osvdb.org/119302http://www.osvdb.org/119303http://www.securityfocus.com/bid/73430http://www.securitytracker.com/id/1031877http://protekresearchlab.com/PRL-2015-02/http://protekresearchlab.com/prl-2015-01prl-foxit-products-gif-conversion-memory-corruption-vulnerabilities-lzwminimumcodesize/http://securitytracker.com/id/1031878http://www.exploit-db.com/exploits/36334http://www.exploit-db.com/exploits/36335http://www.foxitsoftware.com/support/security_bulletins.php#FRD-23http://www.foxitsoftware.com/support/security_bulletins.php#FRD-24http://www.osvdb.org/119302http://www.osvdb.org/119303http://www.securityfocus.com/bid/73430http://www.securitytracker.com/id/1031877
2015-03-30
Published