First published: Thu Jun 04 2020(Updated: )
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.1. It allows stack consumption via a loop of an indirect object reference.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Foxitsoftware Phantompdf | <9.7.1 | |
Foxitsoftware Reader | <9.7.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2020-13815.
The severity of CVE-2020-13815 is high with a value of 7.5.
Foxit Reader and PhantomPDF versions up to and exclusive of 9.7.1 are affected by CVE-2020-13815.
CVE-2020-13815 allows stack consumption through a loop of an indirect object reference.
You can find more information about CVE-2020-13815 in the security bulletins on the Foxit Software website.