Description
In Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can obtain sensitive information about an uninitialized object because of direct transformation from PDF Object to Stream without concern for a crafted XObject.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-3846 | In Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can obtain sensitive information about an uninitialized object because of direct transformation from PDF Object to Stream without concern for a crafted XObject. |
References
| Link | Providers |
|---|---|
| https://www.foxitsoftware.com/support/security-bulletins.php |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T11:35:12.404Z
Reserved: 2020-04-02T00:00:00.000Z
Link: CVE-2020-11493
No data.
Status : Modified
Published: 2020-09-04T04:15:11.733
Modified: 2024-11-21T04:58:00.553
Link: CVE-2020-11493
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD