FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (Break instruction exception and application crash) via BMP data because of a ConvertToPDF_x86!ConnectedPDF::ConnectedPDFSDK::FCP_SendEmailNotification issue.
References
Link | Resource |
---|---|
https://yan-1-20.github.io/2018/11/20/2018/11/2018-11-20/ | Broken Link |
https://github.com/Yan-1-20/Yan-1-20.github.io/blob/master/2018/11/20/2018/11/2018-11-20/index.html | Exploit Third Party Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/153215 | Third Party Advisory |
Configurations
Information
Published : 2018-11-20 13:29
Updated : 2018-12-11 08:57
NVD link : CVE-2018-19389
Mitre link : CVE-2018-19389
JSON object : View
CWE
CWE-125
Out-of-bounds Read
Products Affected
foxitsoftware
- foxit_reader