Unrated severityNVD Advisory· Published Feb 25, 2011· Updated Apr 29, 2026
CVE-2011-0332
CVE-2011-0332
Description
Integer overflow in Foxit Reader before 4.3.1.0218 and Foxit Phantom before 2.3.3.1112 allows remote attackers to execute arbitrary code via crafted ICC chunks in a PDF file, which triggers a heap-based buffer overflow.
Affected products
23cpe:2.3:a:foxitsoftware:foxit_reader:*:*:*:*:*:*:*:*+ 13 more
- cpe:2.3:a:foxitsoftware:foxit_reader:*:*:*:*:*:*:*:*range: <=4.3
- cpe:2.3:a:foxitsoftware:foxit_reader:2.0:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_reader:2.2:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_reader:2.3:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_reader:3.0:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_reader:3.1:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_reader:3.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_reader:3.1.3:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_reader:3.1.4:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_reader:3.2:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_reader:3.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_reader:3.3.1:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_reader:4.0:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_reader:4.1.1:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_phantom:*:*:*:*:*:*:*:*+ 8 more
- cpe:2.3:a:foxitsoftware:foxit_phantom:*:*:*:*:*:*:*:*range: <=2.3
- cpe:2.3:a:foxitsoftware:foxit_phantom:1.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_phantom:2.0:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_phantom:2.1:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_phantom:2.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_phantom:2.2:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_phantom:2.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_phantom:2.2.3:*:*:*:*:*:*:*
- cpe:2.3:a:foxitsoftware:foxit_phantom:2.2.4:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- www.foxitsoftware.com/pdf/reader/security_bulletins.phpnvdPatchVendor Advisory
- www.securitytracker.com/idnvdThird Party AdvisoryVDB Entry
- www.vupen.com/english/advisories/2011/0508nvdNot Applicable
- secunia.com/advisories/43329nvd
- secunia.com/advisories/43440nvd
- secunia.com/secunia_research/2011-14/nvd
News mentions
0No linked articles in our index yet.