CVE-2021-31454: Foxit Reader XFA leadDigits Heap-based Buffer Overflow Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37576. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of the Decimal element. A crafted leadDigits value in a Decimal element can trigger an overflow of a fixed-length heap-based buffer. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current process. Was ZDI-CAN-13095.
Other sources
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of the Decimal element. A crafted leadDigits value in a Decimal element can trigger an overflow of a fixed-length heap-based buffer. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-31454?
CVE-2021-31454 is a vulnerability in Foxit Reader that allows remote attackers to execute arbitrary code on affected installations.
How severe is CVE-2021-31454?
CVE-2021-31454 has a severity score of 7.8 (high severity).
How can this vulnerability be exploited?
To exploit CVE-2021-31454, the target must visit a malicious page or open a malicious file, which requires user interaction.
Which versions of Foxit Reader are affected?
Foxit Reader versions up to and including 10.1.3.37598 are affected by CVE-2021-31454.
Is Microsoft Windows affected by this vulnerability?
No, Microsoft Windows is not affected by CVE-2021-31454.