CVE-2019-20821
Description
An issue was discovered in Foxit PhantomPDF Mac before 3.4. It has a NULL pointer dereference.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Foxit PhantomPDF for Mac before version 3.4 is vulnerable to a NULL pointer dereference.
Vulnerability
A NULL pointer dereference exists in Foxit PhantomPDF for Mac versions prior to 3.4. The vulnerability occurs in an unspecified code path and can be triggered by opening a specially crafted PDF file.
Exploitation
An attacker can exploit this vulnerability by crafting a malicious PDF file and persuading a user to open it. No authentication is required. The attack vector is local or remote via email or web download.
Impact
Successful exploitation causes a NULL pointer dereference, leading to a denial of service (application crash). The impact is limited to availability.
Mitigation
Update to Foxit PhantomPDF Mac version 3.4 or later. No workaround is documented.
AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.
Affected products
2- Foxit/PhantomPDF Macdescription
- Range: <3.4
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- www.foxitsoftware.com/support/security-bulletins.phpmitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.