Release date:
Updated on:
Affected Systems:
Foxit Reader 4.x
Foxit Reader 3.x
Foxit Reader 2.x
Unaffected system:
Foxit Reader 4.0.0.0619
Description:
--------------------------------------------------------------------------------
Bugtraq id: 48359
Cve id: CVE-2011-1908
Foxit Reader is a small PDF document viewer and print program.
Foxit Reader has the remote integer overflow vulnerability in the implementation of Freetype engine. Attackers can exploit this vulnerability to execute arbitrary code, which may cause DOS.
<* Source: David Seidman
Link: http://www.foxitsoftware.com/products/reader/security_bulletins.php#files
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Foxit
-----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.foxitsoft.com/wac/server_intro.php