CVE-2019-20825: Critical severity foxit phantompdf vulnerability
Published Jun 4, 2020
·Updated
An issue was discovered in Foxit PhantomPDF before 8.3.11. It has an out-of-bounds write when Internet Explorer is used.
Affected Software
1 affected component
Foxitsoftware Phantompdf<8.3.11
Event History
Jun 4, 2020
CVE Published
via MITRE·04:58 PM
Data Sourced
via MITRE·04:58 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-20825?
The severity of CVE-2019-20825 is classified as high due to the potential for exploitation leading to system compromise.
2
How do I fix CVE-2019-20825?
To fix CVE-2019-20825, upgrade Foxit PhantomPDF to version 8.3.11 or later.
3
What type of vulnerability is CVE-2019-20825?
CVE-2019-20825 is an out-of-bounds write vulnerability that occurs when using Internet Explorer.
4
Which versions of Foxit PhantomPDF are affected by CVE-2019-20825?
Versions of Foxit PhantomPDF prior to 8.3.11 are affected by CVE-2019-20825.
5
Is there a workaround for CVE-2019-20825?
Currently, there is no official workaround for CVE-2019-20825; updating the software is the recommended action.