Vulnerabilities > CVE-2011-0332 - Numeric Errors vulnerability in Foxitsoftware Foxit Phantom and Foxit Reader
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Integer overflow in Foxit Reader before 4.3.1.0218 and Foxit Phantom before 2.3.3.1112 allows remote attackers to execute arbitrary code via crafted ICC chunks in a PDF file, which triggers a heap-based buffer overflow.
Vulnerable Configurations
Common Weakness Enumeration (CWE)
Nessus
NASL family | Windows |
NASL id | FOXIT_READER_4_3_1_0218.NASL |
description | The version of Foxit Reader installed on the remote Windows host is prior to 4.3.1.0218. It is, therefore, affected by multiple vulnerabilities : - An integer overflow condition exists when parsing certain ICC chunks. An attacker can exploit this, via crafted ICC chunks in a PDF file, to cause a heap-based buffer overflow, resulting in the execution of arbitrary code. (CVE-2011-0332) - A flaw exists in the JavaScript API related to the createDataObject() function. An attacker can exploit this, via a crafted PDF file using a call to that function, to create or overwrite arbitrary files. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 52458 |
published | 2011-02-25 |
reporter | This script is Copyright (C) 2011-2019 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/52458 |
title | Foxit Reader < 4.3.1.0218 Multiple Vulnerabilities |
code |
|
Seebug
bulletinFamily | exploit |
description | BUGTRAQ ID: 46565 CVE ID: CVE-2011-0332 Foxit Reader是一款小型的PDF文档查看器和打印程序。 Foxit Reader在实现上存在ICC解析远程整数溢出漏洞,攻击者可利用此漏洞在受影响应用程序中执行任意代码,造成拒绝服务。 此漏洞源于在解析某些ICC块时的整数溢出错误,可通过特制的文件造成堆缓冲区溢出。 Foxit Foxit Reader 4.3.1.0118 厂商补丁: Foxit ----- 目前厂商已经发布了升级补丁以修复这个安全问题,请到厂商的主页下载: http://www.foxitsoft.com/wac/server_intro.php |
id | SSV:20345 |
last seen | 2017-11-19 |
modified | 2011-03-02 |
published | 2011-03-02 |
reporter | Root |
title | Foxit Reader ICC解析远程整数溢出漏洞 |
References
- http://secunia.com/advisories/43329
- http://secunia.com/advisories/43440
- http://secunia.com/secunia_research/2011-14/
- http://www.foxitsoftware.com/pdf/reader/security_bulletins.php#memory
- http://www.securitytracker.com/id?1025129
- http://www.vupen.com/english/advisories/2011/0508
- http://secunia.com/advisories/43329
- http://www.vupen.com/english/advisories/2011/0508
- http://www.securitytracker.com/id?1025129
- http://www.foxitsoftware.com/pdf/reader/security_bulletins.php#memory
- http://secunia.com/secunia_research/2011-14/
- http://secunia.com/advisories/43440