Intrusion Prevention

Foxit.Reader.JPXDecode.Heap.Overflow

Description

This indicates an attack attempt against a Memory Corruption vulnerability in Foxit Reader and PhantomPDF.
The vulnerability is due to an error when the vulnerable software processes specially crafted PDF files with malformed JPXDecode streams. A remote attacker may be able to exploit this to cause a denial of service condition.

Affected Products

Foxit Reader 8.0.0.624 and earlier on Windows
Foxit Reader 2.0.0.0625 and earlier on Mac OS X
Foxit Reader 1.1.1.0602 and earlier on Linux
Foxit PhantomPDF 8.0.1.628 and earlier on Windows

Impact

Denial of Service: Remote attackers can crash vulnerable systems.

Recommended Actions

Apply the most recent upgrade or patch from the vendor.
https://www.foxitsoftware.com/support/security-bulletins.php