CVE-2019-14212

Severity CVSS v4.0:
Pending analysis
Type:
CWE-476 NULL Pointer Dereference
Publication date:
21/07/2019
Last modified:
22/07/2019

Description

An issue was discovered in Foxit PhantomPDF before 8.3.11. The application could crash when calling certain XFA JavaScript due to the use of, or access to, a NULL pointer without proper validation on the object.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:foxitsoftware:phantompdf:*:*:*:*:*:*:*:* 8.3.11 (excluding)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*