CVE-2020-12248
04.09.2020, 04:15
In Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can execute arbitrary code via a heap-based buffer overflow because dirty image-resource data is mishandled.Enginsight
Vendor | Product | Version |
---|---|---|
foxitsoftware | phantompdf | 𝑥 ≤ 9.7.2.29539 |
foxitsoftware | phantompdf | 𝑥 ≤ 10.0.0.35798 |
foxitsoftware | reader | 𝑥 ≤ 10.0.0.35798 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration