CVE-2015-3632: Buffer Overflow
Published May 1, 2015
·Updated
Foxit Reader, Enterprise Reader, and PhantomPDF before 7.1.5 allow remote attackers to cause a denial of service (memory corruption and crash) via a crafted GIF in a PDF file.
Affected Software
3 affected components
Foxitsoftware Enterprise Reader<=7.1.3.320
Foxitsoftware Foxit Reader<=7.1.3.320
Foxitsoftware Phantompdf<=7.1.3.320
Event History
May 1, 2015
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-3632?
CVE-2015-3632 has a severity rating that classifies it as a denial of service vulnerability.
2
How do I fix CVE-2015-3632?
To fix CVE-2015-3632, update Foxit Reader, Enterprise Reader, or PhantomPDF to version 7.1.5 or later.
3
What are the affected software versions for CVE-2015-3632?
CVE-2015-3632 affects Foxit Reader, Enterprise Reader, and PhantomPDF versions up to 7.1.3.320.
4
What type of attack does CVE-2015-3632 enable?
CVE-2015-3632 allows remote attackers to cause a denial of service through memory corruption.
5
Is CVE-2015-3632 exploitable through user interaction?
Yes, CVE-2015-3632 can be exploited by opening a specially crafted PDF file containing a malicious GIF.