(CVE-2019-6982) Foxit Reader U3D CLOD Mesh Declaration OOB Write

CVE: CVE-2019-6982 Tested Versions: Foxit Reader 9.0.1.1049, U3DBrowser.fpi 9.0.1.994 Product URL(s): https://www.foxitsoftware.com/pdf-reader/ Foxit Reader is a popular PDF reading and printing software. It provides compatibility to the ECMA-363 Standard (Universal 3D File Format) via the U3DBrowser plug-in, which allows viewing embedded 3D annotations in PDF files. Up to version 9.0.1.1049 the plug-in is loaded in its default installation package, subsequent version continues the support to its user base with the plug-in separately acquired....

November 27, 2018 · 3 min · Wei Lei

(CVE-2019-6983) Foxit Reader U3D File Header Block Heap Overflow

CVE: CVE-2019-6983 Tested Versions: Foxit Reader 9.1.0.5096, U3DBrowser.fpi 9.1.0.425 Product URL(s): https://www.foxitsoftware.com/pdf-reader/ Foxit Reader is a popular PDF reading and printing software. It provides compatibility to the ECMA-363 Standard (Universal 3D File Format) via the U3DBrowser plug-in, which allows viewing embedded 3D annotations in PDF files. Up to version 9.0.1.1049 the plug-in is loaded in its default installation package, subsequent version continues the support to its user base with the plug-in separately acquired....

November 27, 2018 · 5 min · Wei Lei