Out-of-bounds read in Foxit PDF Editor (formerly Foxit PhantomPDF) - #VU6410
Published: May 4, 2017
Foxit PDF Editor (formerly Foxit PhantomPDF)
Detailed vulnerability description
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to a boundary error when processing fonts within PDF files. A remote attacker can create a specially crafted PDF file, trick the victim into opening it, trigger out-of-bounds read and gain access to sensitive data.