CVE-2020-13808: High severity foxit phantompdf vulnerability
Published Jun 4, 2020
·Updated
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.2. It allows resource consumption via crafted cross-reference stream data.
Affected Software
2 affected components
Foxitsoftware Phantompdf<9.7.2
Foxitsoftware Reader<9.7.2
Remediation
Patch Available
Event History
Jun 4, 2020
CVE Published
via MITRE·02:53 PM
Data Sourced
via MITRE·02:53 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2020-13808.
2
What is the severity of CVE-2020-13808?
The severity of CVE-2020-13808 is high.
3
What is the affected software for CVE-2020-13808?
The affected software for CVE-2020-13808 is Foxit Reader and PhantomPDF before version 9.7.2.
4
What is the description of CVE-2020-13808?
CVE-2020-13808 is a vulnerability in Foxit Reader and PhantomPDF that allows resource consumption via crafted cross-reference stream data.
5
How can I fix CVE-2020-13808?
To fix CVE-2020-13808, update Foxit Reader and PhantomPDF to version 9.7.2 or later.