CVE-2021-38569

An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows stack consumption via recursive function calls during the handling of XFA forms or link objects.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:foxitsoftware:foxit_reader:*:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:phantompdf:*:*:*:*:*:*:*:*

History

12 Aug 2021, 20:25

Type Values Removed Values Added
References (MISC) https://www.foxitsoftware.com/support/security-bulletins.php - (MISC) https://www.foxitsoftware.com/support/security-bulletins.php - Vendor Advisory
CPE cpe:2.3:a:foxitsoftware:phantompdf:*:*:*:*:*:*:*:*
cpe:2.3:a:foxitsoftware:foxit_reader:*:*:*:*:*:*:*:*
CWE CWE-674
CVSS v2 : unknown
v3 : unknown
v2 : 5.0
v3 : 7.5

11 Aug 2021, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2021-08-11 22:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-38569

Mitre link : CVE-2021-38569

CVE.ORG link : CVE-2021-38569


JSON object : View

Products Affected

foxitsoftware

  • foxit_reader
  • phantompdf
CWE
CWE-674

Uncontrolled Recursion