Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, mishandle hidden and incremental data in signed documents. An attacker can write to an arbitrary file, and display controlled contents, during signature verification.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.foxit.com/support/security-bulletins.html |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2022-08-29T04:54:36
Updated: 2024-08-04T02:27:31.889Z
Reserved: 2021-08-30T00:00:00
Link: CVE-2021-40326
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-08-29T05:15:07.753
Modified: 2024-11-21T06:23:51.870
Link: CVE-2021-40326
Redhat
No data.