High severity8.8NVD Advisory· Published Oct 31, 2016· Updated Jun 17, 2026
CVE-2016-8877
CVE-2016-8877
Description
Heap buffer overflow (Out-of-Bounds write) vulnerability in Foxit Reader and PhantomPDF before 8.1 on Windows allows remote attackers to execute arbitrary code via a crafted JPEG2000 image embedded in a PDF document, aka a "corrupted suffix pattern" issue.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:foxitsoftware:phantompdf:*:*:*:*:*:windows:*:*+ 1 more
- cpe:2.3:a:foxitsoftware:phantompdf:*:*:*:*:*:windows:*:*range: <=8.0.5
- (no CPE)range: <8.1
cpe:2.3:a:foxitsoftware:reader:*:*:*:*:*:windows:*:*+ 1 more
- cpe:2.3:a:foxitsoftware:reader:*:*:*:*:*:windows:*:*range: <=8.0.5
- (no CPE)range: <8.1
Patches
Vulnerability mechanics
References
2- www.foxitsoftware.com/support/security-bulletins.phpnvdPatchVendor Advisory
- www.securityfocus.com/bid/93608nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.