Foxit PDF Reader
cpe:2.3:a:foxitsoftware:pdf_reader:*:*:*:*:*:*:*, +6 more
- <= 2025.2.1.33197
- <= 2025.2.1.69005
A heap-based buffer overflow vulnerability has been identified in Foxit PDF Reader and Foxit PDF Editor. This vulnerability arises in the PDF parsing component when the software processes specially crafted JBIG2 data. The issue is caused by an integer overflow in the calculation of the image buffer size, which could potentially allow a remote attacker to execute arbitrary code.
Exploitation of this vulnerability could lead to a crash of the application and allow for arbitrary code execution.
Users can update to Foxit PDF Reader 2025.3 or Foxit PDF Editor 2025.3/14.0.2/13.2.2. Instructions for updating or downloading the latest versions are available on the Foxit website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.