FoxitReader JPEG2000/JBIG Decoder Memory Corruption Vulnerability
RISK: Medium Risk
Two vulnerabilities have been identified in Foxit Reader JPEG2000/JBIG Decoder Add-on, which could be exploited by attackers to compromise a vulnerable system. These issues are caused by memory corruption errors in the handling of JPX (JPEG2000) streams, which could allow attackers to crash an affected application or execute arbitrary code by tricking a user into opening a specially crafted PDF file.
Impact
- Remote Code Execution
System / Technologies affected
- Foxit Reader JPEG2000/JBIG2 Decoder add-on versions prior to 2.0 Build 2009.616
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
Upgrade to Foxit Reader JPEG2000/JBIG2 Decoder add-on version 2.0.2009.616 :
http://www.foxitsoftware.com/downloads/addons/jpg_decoder2.0.20096.html
Vulnerability Identifier
- No CVE information is available
Source
Related Link
Share with