CVE-2012-4337
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
23/08/2012
Last modified:
11/04/2025
Description
Foxit Reader before 5.3 on Windows XP and Windows 7 allows remote attackers to execute arbitrary code via a PDF document with a crafted attachment that triggers calculation of a negative number during processing of cross references.
Impact
Base Score 2.0
9.30
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:foxitsoftware:foxit_reader:*:*:*:*:*:*:*:* | 5.1.4.0104 (including) | |
| cpe:2.3:a:foxitsoftware:foxit_reader:2.0:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:2.3:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:3.0:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:3.1.2.1013:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:3.1.2.1030:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:3.2.0.0303:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:3.2.1.0401:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:4.0:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:4.0.0.0619:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:4.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:4.1.1.0805:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:4.2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:4.3:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:4.3.1.0218:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://secunia.com/advisories/50359
- http://securitytracker.com/id?1027424=
- http://technet.microsoft.com/security/msvr/msvr12-013
- http://www.foxitsoftware.com/Secure_PDF_Reader/security_bulletins.php
- http://www.osvdb.org/84808
- http://www.securityfocus.com/bid/55150
- http://secunia.com/advisories/50359
- http://securitytracker.com/id?1027424=
- http://technet.microsoft.com/security/msvr/msvr12-013
- http://www.foxitsoftware.com/Secure_PDF_Reader/security_bulletins.php
- http://www.osvdb.org/84808
- http://www.securityfocus.com/bid/55150



