Unrated severityNVD Advisory· Published Jun 23, 2009· Updated Apr 23, 2026
CVE-2009-0691
CVE-2009-0691
Description
The Foxit JPEG2000/JBIG2 Decoder add-on before 2.0.2009.616 for Foxit Reader 3.0 before Build 1817 does not properly handle a fatal error during decoding of a JPEG2000 (aka JPX) header, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted PDF file that triggers an invalid memory access.
Affected products
2- cpe:2.3:a:foxitsoftware:jpeg2000_jbig2_decoder_add-on:*:*:*:*:*:*:*:*Range: <=2.0.2009.303
- cpe:2.3:a:foxitsoftware:foxit_reader:3.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- www.foxitsoftware.com/pdf/reader/security.htmnvdPatchVendor Advisory
- www.kb.cert.org/vuls/id/251793nvdPatchUS Government Resource
- www.securityfocus.com/bid/35443nvdPatch
- www.vupen.com/english/advisories/2009/1640nvdPatchVendor Advisory
- secunia.com/advisories/35512nvdVendor Advisory
- securitytracker.com/idnvd
News mentions
0No linked articles in our index yet.