CVE-2025-66497: Foxit PDF Reader 3D Annotation Out-of-Bounds Memory Access Vulnerability
A memory corruption vulnerability exists in the 3D annotation handling of Foxit PDF Reader due to insufficient bounds checking when parsing PRC data. When opening a PDF file containing malformed or specially crafted PRC content, out-of-bounds memory access may occur, resulting in memory corruption.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-66497?
CVE-2025-66497 is identified as a critical severity vulnerability due to its potential to cause memory corruption.
How do I fix CVE-2025-66497?
To fix CVE-2025-66497, update your Foxit PDF Reader to the latest version that addresses this vulnerability.
What types of attack vectors are associated with CVE-2025-66497?
CVE-2025-66497 can be exploited by opening a specially crafted PDF file containing malformed PRC data.
What is the impact of CVE-2025-66497?
Exploiting CVE-2025-66497 may lead to out-of-bounds memory access, resulting in memory corruption and potential execution of arbitrary code.
Which versions of Foxit PDF Reader are affected by CVE-2025-66497?
All versions of Foxit PDF Reader that handle 3D annotations are potentially affected by CVE-2025-66497.