mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-15 15:58:01 +02:00
18 lines
818 B
Markdown
18 lines
818 B
Markdown
### [CVE-2016-8878](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-8878)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
Out-of-Bounds read vulnerability in Foxit Reader and PhantomPDF before 8.1 on Windows, when the gflags app is enabled, allows remote attackers to execute arbitrary code via a crafted BMP image embedded in the XFA stream in a PDF document, aka "Data from Faulting Address may be used as a return value starting at FOXITREADER."
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://www.foxitsoftware.com/support/security-bulletins.php
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|