Vulnerability Details CVE-2011-1908
Integer overflow in the Type 1 font decoder in the FreeType engine in Foxit Reader before 4.0.0.0619 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted font in a PDF document.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 71.8%
CVSS Severity
CVSS v2 Score 9.3
Products affected by CVE-2011-1908
-
cpe:2.3:a:foxitsoftware:foxit_reader:2.0
-
cpe:2.3:a:foxitsoftware:foxit_reader:2.2
-
cpe:2.3:a:foxitsoftware:foxit_reader:2.3
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.0
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.1
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.1.0.0111
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.1.0.0824
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.1.1
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.1.1.0901
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.1.2.1013
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.1.2.1030
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.1.3
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.1.4
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.1.4.1125
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.2
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.2.0.0303
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.2.1
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.2.1.0401
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.3
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.3.0.0430
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.3.1
-
cpe:2.3:a:foxitsoftware:foxit_reader:3.3.1.0520
-
cpe:2.3:a:foxitsoftware:foxit_reader:4.0