CVE-2016-3740: Buffer Overflow
Heap-based buffer overflow in the CreateFXPDFConvertor function in ConvertToPdfx86.dll in Foxit Reader 7.3.4.311 allows remote attackers to execute arbitrary code via a large SamplesPerPixel value in a crafted TIFF image that is mishandled during PDF conversion. This is fixed in 8.0.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-3740?
CVE-2016-3740 is classified as a high severity vulnerability due to its potential to allow remote code execution.
How do I fix CVE-2016-3740?
To fix CVE-2016-3740, upgrade to Foxit Reader version 8.0 or later.
What does CVE-2016-3740 affect?
CVE-2016-3740 affects Foxit Reader version 7.3.4.311 by enabling a heap-based buffer overflow during PDF conversion.
Who is impacted by CVE-2016-3740?
Users of Foxit Reader version 7.3.4.311 are impacted by CVE-2016-3740.
What type of attack is associated with CVE-2016-3740?
CVE-2016-3740 is associated with a remote code execution attack resulting from processing a specially crafted TIFF image.