CVE-2015-8843
Severity CVSS v4.0:
Pending analysis
Type:
CWE-119
Buffer Errors
Publication date:
13/04/2016
Last modified:
12/04/2025
Description
The Foxit Cloud Update Service (FoxitCloudUpdateService) in Foxit Reader 6.1 through 6.2.x and 7.x before 7.2.2, when an update to the Cloud plugin is available, allows local users to gain privileges by writing crafted data to a shared memory region, which triggers memory corruption.
Impact
Base Score 3.x
7.40
Severity 3.x
HIGH
Base Score 2.0
6.90
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:foxitsoftware:foxit_reader:6.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:6.1.2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:6.1.4:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:6.2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:6.2.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:7.0:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:7.0.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:7.0.6:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:7.1.5:*:*:*:*:*:*:* | ||
| cpe:2.3:a:foxitsoftware:foxit_reader:7.2:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



