CVE-2018-3956

Description

An exploitable out-of-bounds read vulnerability exists in the handling of certain XFA element attributes of Foxit Softwares PDF Reader version 9.1.0.5096. A specially crafted PDF document can trigger an out-of-bounds read, which can disclose sensitive memory content and aid in exploitation when coupled with another vulnerability. An attacker needs to trick the user to open the malicious file to trigger this vulnerability. If the browser plugin extension is enabled, visiting a malicious site can also trigger the vulnerability.

Risk Information

Base Score
7.1
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H
EPSS Score
Exploitation Probability
16.06

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2018-3956,CVE-2018-18688,CVE-2018-18689 are fixed in Foxit PhantomPDF 8.3.9Windows
Vulnerabilities CVE-2018-3956,CVE-2018-18688,CVE-2018-18689 are fixed in Foxit Reader (9.4.1.16828)Windows
Vulnerabilities CVE-2018-3956,CVE-2018-18688,CVE-2018-18689 are fixed in Foxit Reader (9.4.0)Windows
Vulnerabilities CVE-2018-3956,CVE-2018-18688,CVE-2018-18689 are fixed in Foxit Reader Enterprise (9.4.1.16828)Windows
Vulnerabilities CVE-2018-3956,CVE-2018-18688,CVE-2018-18689 are fixed in Foxit Reader Enterprise (9.4.0)Windows
Vulnerabilities CVE-2018-3956,CVE-2018-18688,CVE-2018-18689 are fixed in Foxit PhantomPDF (9.4.0.16811)Windows
Multiple Vulnerabilities are affected in Foxit PhantomPDF 8 (ML) 8.0.5Windows
Multiple Vulnerabilities are affected in Foxit PhantomPDF 9 (EXE) 8.0.5Windows
Multiple Vulnerabilities are affected in Foxit PhantomPDF 9 (ML) (EXE) 8.0.5Windows
Multiple Vulnerabilities are affected in Foxit PhantomPDF 9 (ML) (MSI) 8.0.5Windows
Multiple Vulnerabilities are affected in Foxit PhantomPDF 9 (MSI) 8.0.5Windows
Multiple Vulnerabilities are affected in Foxit PhantomPDF Slim 8.0.5Windows
Multiple vulnerabilities are fixed in Foxit Reader (9.4.1.16828)Windows
Multiple vulnerabilities are fixed in Foxit Reader Enterprise (9.4.1.16828)Windows
Multiple vulnerabilities are fixed in Foxit Reader (9.4.0)Windows
Multiple vulnerabilities are fixed in Foxit Reader Enterprise (9.4.0)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-311625Foxit PhantomPDF 8 (8.3.12.47136)
PATCH-308917Foxit Reader (9.4.1.16828)
PATCH-308710Foxit Reader (9.4.0)
PATCH-308925Foxit Reader Enterprise (9.4.1.16828)
PATCH-308712Foxit Reader Enterprise (9.4.0)
PATCH-308755Foxit PhantomPDF (9.4.0.16811)
PATCH-311706Foxit PhantomPDF 8 ML (8.3.12.47136)
PATCH-317726Foxit PhantomPDF 9 (EXE) (9.7.5.29616)
PATCH-317727Foxit PhantomPDF 9 (ML) (EXE) (9.7.5.29616)
PATCH-317728Foxit PhantomPDF 9 (ML) (MSI) (9.7.5.29616)
PATCH-317729Foxit PhantomPDF 9 (MSI) (9.7.5.29616)
PATCH-306313Foxit PhantomPDF (MSI) (8.3.2) (Formerly Foxit PhantomPDF Slim)
PATCH-347386Foxit Reader (2025.1.0.27937)
PATCH-347385Foxit PDF Reader (MSI) (2025.1.0.27937)
PATCH-347386Foxit Reader (2025.1.0.27937)
PATCH-347385Foxit PDF Reader (MSI) (2025.1.0.27937)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234