Skip to main content

FoxitReader JPEG2000/JBIG Decoder Memory Corruption Vulnerability

Last Update Date: 28 Jan 2011 Release Date: 23 Jun 2009 5519 Views

RISK: Medium Risk

Two vulnerabilities have been identified in Foxit Reader JPEG2000/JBIG Decoder Add-on, which could be exploited by attackers to compromise a vulnerable system. These issues are caused by memory corruption errors in the handling of JPX (JPEG2000) streams, which could allow attackers to crash an affected application or execute arbitrary code by tricking a user into opening a specially crafted PDF file.


Impact

  • Remote Code Execution

System / Technologies affected

  • Foxit Reader JPEG2000/JBIG2 Decoder add-on versions prior to 2.0 Build 2009.616

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

Upgrade to Foxit Reader JPEG2000/JBIG2 Decoder add-on version 2.0.2009.616 :
http://www.foxitsoftware.com/downloads/addons/jpg_decoder2.0.20096.html


Vulnerability Identifier

  • No CVE information is available

Source


Related Link