Lucene search

K
cveMitreCVE-2015-3632
HistoryMay 01, 2015 - 3:59 p.m.

CVE-2015-3632

2015-05-0115:59:10
CWE-119
mitre
web.nvd.nist.gov
31
cve-2015-3632
foxit reader
enterprise reader
phantompdf
denial of service
memory corruption
crash
gif
pdf
nvd

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

6.9

Confidence

High

EPSS

0.023

Percentile

89.9%

Foxit Reader, Enterprise Reader, and PhantomPDF before 7.1.5 allow remote attackers to cause a denial of service (memory corruption and crash) via a crafted GIF in a PDF file.

Affected configurations

Nvd
Node
foxitsoftwareenterprise_readerRange7.1.3.320
OR
foxitsoftwarefoxit_readerRange7.1.3.320
OR
foxitsoftwarephantompdfRange7.1.3.320
VendorProductVersionCPE
foxitsoftwareenterprise_reader*cpe:2.3:a:foxitsoftware:enterprise_reader:*:*:*:*:*:*:*:*
foxitsoftwarefoxit_reader*cpe:2.3:a:foxitsoftware:foxit_reader:*:*:*:*:*:*:*:*
foxitsoftwarephantompdf*cpe:2.3:a:foxitsoftware:phantompdf:*:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

6.9

Confidence

High

EPSS

0.023

Percentile

89.9%