CVE-2019-20818: High severity foxit phantompdf vulnerability
Published Jun 4, 2020
·Updated
An issue was discovered in Foxit Reader and PhantomPDF before 9.7. It allows memory consumption because data is created for each page of an application level.
Affected Software
2 affected components
Foxitsoftware Phantompdf<9.7
Foxitsoftware Reader<9.7
Remediation
Patch Available
Event History
Jun 4, 2020
CVE Published
via MITRE·03:47 PM
Data Sourced
via MITRE·03:47 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID is CVE-2019-20818.
2
What is the severity of CVE-2019-20818?
The severity of CVE-2019-20818 is high with a severity value of 7.5.
3
What software versions are affected by CVE-2019-20818?
Foxit Reader and PhantomPDF versions up to 9.7 are affected by CVE-2019-20818.
4
How does CVE-2019-20818 lead to memory consumption?
CVE-2019-20818 leads to memory consumption because data is created for each page of an application level.
5
Where can I find more information about CVE-2019-20818?
More information about CVE-2019-20818 can be found at the following link: [Foxit Software Security Bulletins](https://www.foxitsoftware.com/support/security-bulletins.php).