First published: Mon Jan 28 2019(Updated: )
An issue was discovered in Foxit 3D Plugin Beta before 9.4.0.16807 for Foxit Reader and PhantomPDF. The application could encounter an Out-of-Bounds Read in Indexing or a Heap Overflow and crash during handling of certain PDF files that embed specifically crafted 3D content, due to an array access violation.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Foxitsoftware 3d | <9.4.0.16807 | |
Foxitsoftware 3d | <9.4.0.16807 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-6985 is a vulnerability discovered in Foxit 3D Plugin Beta before 9.4.0.16807 for Foxit Reader and PhantomPDF.
The severity of CVE-2019-6985 is high with a CVSS score of 8.8.
Foxit 3D Plugin Beta versions up to 9.4.0.16807 for Foxit Reader and PhantomPDF are affected.
CVE-2019-6985 can manifest as an Out-of-Bounds Read in Indexing or a Heap Overflow, causing the application to crash when handling certain PDF files with specifically crafted 3D content.
To fix CVE-2019-6985, users should update to Foxit 3D Plugin Beta version 9.4.0.16807 or higher for both Foxit Reader and PhantomPDF.