CVE-2009-0691: Critical severity foxit software jpeg2000 jbig2 decoder add-on vulnerability
The Foxit JPEG2000/JBIG2 Decoder add-on before 2.0.2009.616 for Foxit Reader 3.0 before Build 1817 does not properly handle a fatal error during decoding of a JPEG2000 (aka JPX) header, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted PDF file that triggers an invalid memory access.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-0691?
CVE-2009-0691 has a severity level rated as moderate, primarily due to its potential to cause denial of service.
How do I fix CVE-2009-0691?
To fix CVE-2009-0691, update the Foxit JPEG2000/JBIG2 Decoder add-on to version 2.0.2009.616 or later.
What software is affected by CVE-2009-0691?
CVE-2009-0691 affects Foxit Reader version 3.0 and the Foxit JPEG2000/JBIG2 Decoder add-on versions up to 2.0.2009.303.
What kind of attack can exploit CVE-2009-0691?
CVE-2009-0691 can be exploited by remote attackers to induce application crashes or memory corruption.
Who is the vendor associated with CVE-2009-0691?
The vendor associated with CVE-2009-0691 is Foxit Software.