CVE-2009-0837: Buffer Overflow
Published Mar 10, 2009
·Updated
Stack-based buffer overflow in Foxit Reader 3.0 before Build 1506, including 1120 and 1301, allows remote attackers to execute arbitrary code via a long (1) relative path or (2) absolute path in the filename argument in an action, as demonstrated by the "Open/Execute a file" action.
Affected Software
1 affected component
Foxit Reader3.0
Event History
Mar 10, 2009
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Data Sourced
via NVD·08:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2009-0837?
CVE-2009-0837 has been classified as a high severity vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2009-0837?
To fix CVE-2009-0837, users should upgrade to Foxit Reader version 3.0 Build 1506 or later.
3
What type of vulnerability is CVE-2009-0837?
CVE-2009-0837 is a stack-based buffer overflow vulnerability.
4
What software is affected by CVE-2009-0837?
CVE-2009-0837 affects Foxit Reader version 3.0 prior to Build 1506.
5
Can CVE-2009-0837 be exploited remotely?
Yes, CVE-2009-0837 can be exploited remotely through specially crafted filenames in an action.