
CVE-2018-9980 – Foxit Reader U3D Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2018-9980
04 May 2018 — This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of U3D files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction wit... • https://www.foxitsoftware.com/support/security-bulletins.php • CWE-125: Out-of-bounds Read •

CVE-2018-9982 – Foxit Reader U3D Texture Width Out-Of-Bounds Write Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2018-9982
04 May 2018 — This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of the Texture Width in U3D files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated object. An attacker can leverage this vuln... • https://www.foxitsoftware.com/support/security-bulletins.php • CWE-787: Out-of-bounds Write •

CVE-2018-9977 – Foxit Reader U3D Modifier Chain Use-After-Free Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2018-9977
04 May 2018 — This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of Modifier Chain objects in U3D files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to exec... • https://www.foxitsoftware.com/support/security-bulletins.php • CWE-416: Use After Free •

CVE-2018-9976 – Foxit Reader U3D Textures Out-Of-Bounds Read Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2018-9976
04 May 2018 — This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of Texture objects in U3D files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this... • https://www.foxitsoftware.com/support/security-bulletins.php • CWE-125: Out-of-bounds Read •

CVE-2018-9981 – Foxit Reader U3D Parsing Uninitialized Pointer Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2018-9981
04 May 2018 — This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of U3D files. The issue results from the lack of proper initialization of a pointer prior to accessing it. An attacker can leverage this vulnerability to execute code under the context of the current process. • https://www.foxitsoftware.com/support/security-bulletins.php • CWE-824: Access of Uninitialized Pointer •

CVE-2017-17557
https://notcve.org/view.php?id=CVE-2017-17557
24 Apr 2018 — In Foxit Reader before 9.1 and Foxit PhantomPDF before 9.1, a flaw exists within the parsing of the BITMAPINFOHEADER record in BMP files. The issue results from the lack of proper validation of the biSize member, which can result in a heap based buffer overflow. An attacker can leverage this to execute code in the context of the current process. En Foxit Reader, en versiones anteriores a la 9.1, y Foxit PhantomPDF, en versiones anteriores a la 9.1, existe un error en el análisis del registro BITMAPINFOHEADE... • http://www.securityfocus.com/bid/103999 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2018-10303
https://notcve.org/view.php?id=CVE-2018-10303
23 Apr 2018 — A use-after-free in Foxit Reader before 9.1 and PhantomPDF before 9.1 allows remote attackers to execute arbitrary code, aka iDefense ID V-y0nqfutlf3. Un uso de memoria previamente liberada en Foxit Reader, en versiones anteriores a la 9.1, y PhantomPDF, en versiones anteriores a la 9.1, permite que atacantes remotos ejecuten código arbitrario. Esto también se conoce como iDefense ID V-y0nqfutlf3. • https://srcincite.io/advisories/src-2018-0020 • CWE-416: Use After Free •

CVE-2018-10302
https://notcve.org/view.php?id=CVE-2018-10302
23 Apr 2018 — A use-after-free in Foxit Reader before 9.1 and PhantomPDF before 9.1 allows remote attackers to execute arbitrary code, aka iDefense ID V-jyb51g3mv9. Un uso de memoria previamente liberada en Foxit Reader, en versiones anteriores a la 9.1, y PhantomPDF, en versiones anteriores a la 9.1, permite que atacantes remotos ejecuten código arbitrario. Esto también se conoce como iDefense ID V-jyb51g3mv9. • https://srcincite.io/advisories/src-2018-0019 • CWE-416: Use After Free •

CVE-2018-9961 – Foxit Reader Field rect Use-After-Free Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2018-9961
20 Apr 2018 — This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.1.1049. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of the rect Field attribute. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code und... • https://www.foxitsoftware.com/support/security-bulletins.php • CWE-416: Use After Free •

CVE-2018-9969 – Foxit Reader XFA Button boundItem Use-After-Free Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2018-9969
20 Apr 2018 — This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.1.1049. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the XFA boundItem method of Button elements. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code... • https://www.foxitsoftware.com/support/security-bulletins.php • CWE-416: Use After Free •