CVE-2015-8843: Buffer Overflow
Published Apr 13, 2016
·Updated
The Foxit Cloud Update Service (FoxitCloudUpdateService) in Foxit Reader 6.1 through 6.2.x and 7.x before 7.2.2, when an update to the Cloud plugin is available, allows local users to gain privileges by writing crafted data to a shared memory region, which triggers memory corruption.
Affected Software
10 affected components
Foxitsoftware Foxit Reader=6.1
Foxitsoftware Foxit Reader=6.1.2
Foxitsoftware Foxit Reader=6.1.4
Foxitsoftware Foxit Reader=6.2
Foxitsoftware Foxit Reader=6.2.1
Foxitsoftware Foxit Reader=7.0
Foxitsoftware Foxit Reader=7.0.1
Foxitsoftware Foxit Reader=7.0.6
Foxitsoftware Foxit Reader=7.1.5
Foxitsoftware Foxit Reader=7.2
Remediation
Event History
Apr 13, 2016
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-8843?
CVE-2015-8843 is classified as a privilege escalation vulnerability.
2
How do I fix CVE-2015-8843?
To fix CVE-2015-8843, update Foxit Reader to version 7.2.2 or later.
3
What are the affected versions in CVE-2015-8843?
CVE-2015-8843 affects Foxit Reader versions 6.1 through 6.2.x and 7.x before 7.2.2.
4
Who can exploit CVE-2015-8843?
CVE-2015-8843 can be exploited by local users with access to the system.
5
What is the impact of CVE-2015-8843?
The impact of CVE-2015-8843 enables local users to gain elevated privileges through memory corruption.