Vulnerabilities > Foxitsoftware > Phantompdf > 5.2.1.0615

DATE CVE VULNERABILITY TITLE RISK
2021-01-07 CVE-2018-20312 Race Condition vulnerability in Foxitsoftware Phantompdf
Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can cause a stack-based buffer overflow or an out-of-bounds read, a different issue than CVE-2018-20310 because of a different opcode.
6.8
2021-01-07 CVE-2018-20311 Race Condition vulnerability in Foxitsoftware Phantompdf
Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyCPDFAction race condition that can cause a stack-based buffer overflow or an out-of-bounds read.
6.8
2021-01-07 CVE-2018-20310 Race Condition vulnerability in Foxitsoftware Phantompdf
Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can cause a stack-based buffer overflow or an out-of-bounds read.
6.8
2021-01-07 CVE-2018-20309 Race Condition vulnerability in Foxitsoftware Phantompdf
Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyGetAppEdition race condition that can cause a stack-based buffer overflow or an out-of-bounds read.
6.8
2020-12-31 CVE-2020-35931 Improper Check for Unusual or Exceptional Conditions vulnerability in Foxitsoftware Foxit Reader
An issue was discovered in Foxit Reader before 10.1.1 (and before 4.1.1 on macOS) and PhantomPDF before 9.7.5 and 10.x before 10.1.1 (and before 4.1.1 on macOS).
6.8
2020-12-15 CVE-2020-28203 NULL Pointer Dereference vulnerability in Foxitsoftware Foxit Reader
An issue was discovered in Foxit Reader and PhantomPDF 10.1.0.37527 and earlier.
4.3
2020-10-13 CVE-2020-17417 Use After Free vulnerability in Foxitsoftware Foxit Reader
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.0.1.35811.
6.8
2020-10-13 CVE-2020-17416 Out-of-bounds Write vulnerability in Foxitsoftware Foxit Reader
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.0.0.35798.
6.8
2020-10-13 CVE-2020-17415 Incorrect Permission Assignment for Critical Resource vulnerability in Foxitsoftware Foxit Reader
This vulnerability allows local attackers to escalate privileges on affected installations of Foxit PhantomPDF 10.0.0.35798.
local
low complexity
foxitsoftware CWE-732
7.2
2020-10-13 CVE-2020-17414 Incorrect Permission Assignment for Critical Resource vulnerability in Foxitsoftware Foxit Reader
This vulnerability allows local attackers to escalate privileges on affected installations of Foxit Reader 10.0.0.35798.
local
low complexity
foxitsoftware CWE-732
7.2