CVE-2016-6169: Buffer Overflow
Heap-based buffer overflow in Foxit Reader and PhantomPDF 7.3.4.311 and earlier on Windows allows remote attackers to cause a denial of service (memory corruption and application crash) or potentially execute arbitrary code via the Bezier data in a crafted PDF file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-6169?
CVE-2016-6169 has been rated as critical due to its potential for remote code execution and denial of service.
How do I fix CVE-2016-6169?
To mitigate CVE-2016-6169, update Foxit Reader or PhantomPDF to version 7.3.4.312 or later.
What software is affected by CVE-2016-6169?
CVE-2016-6169 affects Foxit Reader and PhantomPDF versions 7.3.4.311 and earlier on Windows.
What kind of attack is possible with CVE-2016-6169?
CVE-2016-6169 allows attackers to exploit a heap-based buffer overflow, potentially leading to arbitrary code execution or denial of service.
Is there a public exploit available for CVE-2016-6169?
Yes, there are reports of publicly available exploits targeting CVE-2016-6169.