cvelist/2018/9xxx/CVE-2018-9941.json

67 lines
2.5 KiB
JSON
Raw Normal View History

2018-04-10 08:03:52 -04:00
{
2019-03-18 02:47:57 +00:00
"CVE_data_meta": {
"ASSIGNER": "zdi-disclosures@trendmicro.com",
"ID": "CVE-2018-9941",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "Foxit Reader",
"version": {
"version_data": [
{
"version_value": "9.0.0.29935"
}
]
}
}
]
},
"vendor_name": "Foxit"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
ZDI assigns the following CVEs: M 2018/10xxx/CVE-2018-10473.json M 2018/10xxx/CVE-2018-10474.json M 2018/10xxx/CVE-2018-10475.json M 2018/10xxx/CVE-2018-10476.json M 2018/10xxx/CVE-2018-10477.json M 2018/10xxx/CVE-2018-10478.json M 2018/10xxx/CVE-2018-10479.json M 2018/10xxx/CVE-2018-10480.json M 2018/10xxx/CVE-2018-10481.json M 2018/10xxx/CVE-2018-10482.json M 2018/10xxx/CVE-2018-10483.json M 2018/10xxx/CVE-2018-10484.json M 2018/10xxx/CVE-2018-10485.json M 2018/10xxx/CVE-2018-10486.json M 2018/10xxx/CVE-2018-10487.json M 2018/10xxx/CVE-2018-10488.json M 2018/10xxx/CVE-2018-10489.json M 2018/10xxx/CVE-2018-10490.json M 2018/10xxx/CVE-2018-10491.json M 2018/10xxx/CVE-2018-10492.json M 2018/10xxx/CVE-2018-10493.json M 2018/10xxx/CVE-2018-10494.json M 2018/10xxx/CVE-2018-10495.json M 2018/1xxx/CVE-2018-1173.json M 2018/1xxx/CVE-2018-1174.json M 2018/1xxx/CVE-2018-1175.json M 2018/1xxx/CVE-2018-1176.json M 2018/1xxx/CVE-2018-1177.json M 2018/1xxx/CVE-2018-1178.json M 2018/1xxx/CVE-2018-1179.json M 2018/1xxx/CVE-2018-1180.json M 2018/9xxx/CVE-2018-9935.json M 2018/9xxx/CVE-2018-9936.json M 2018/9xxx/CVE-2018-9937.json M 2018/9xxx/CVE-2018-9938.json M 2018/9xxx/CVE-2018-9939.json M 2018/9xxx/CVE-2018-9940.json M 2018/9xxx/CVE-2018-9941.json M 2018/9xxx/CVE-2018-9942.json M 2018/9xxx/CVE-2018-9943.json M 2018/9xxx/CVE-2018-9944.json M 2018/9xxx/CVE-2018-9945.json M 2018/9xxx/CVE-2018-9946.json M 2018/9xxx/CVE-2018-9947.json M 2018/9xxx/CVE-2018-9948.json M 2018/9xxx/CVE-2018-9949.json M 2018/9xxx/CVE-2018-9950.json M 2018/9xxx/CVE-2018-9951.json M 2018/9xxx/CVE-2018-9952.json M 2018/9xxx/CVE-2018-9953.json M 2018/9xxx/CVE-2018-9954.json M 2018/9xxx/CVE-2018-9955.json M 2018/9xxx/CVE-2018-9956.json M 2018/9xxx/CVE-2018-9957.json M 2018/9xxx/CVE-2018-9958.json M 2018/9xxx/CVE-2018-9959.json M 2018/9xxx/CVE-2018-9960.json M 2018/9xxx/CVE-2018-9961.json M 2018/9xxx/CVE-2018-9962.json M 2018/9xxx/CVE-2018-9963.json M 2018/9xxx/CVE-2018-9964.json M 2018/9xxx/CVE-2018-9965.json M 2018/9xxx/CVE-2018-9966.json M 2018/9xxx/CVE-2018-9967.json M 2018/9xxx/CVE-2018-9968.json M 2018/9xxx/CVE-2018-9969.json M 2018/9xxx/CVE-2018-9970.json M 2018/9xxx/CVE-2018-9971.json M 2018/9xxx/CVE-2018-9972.json M 2018/9xxx/CVE-2018-9973.json M 2018/9xxx/CVE-2018-9974.json M 2018/9xxx/CVE-2018-9975.json M 2018/9xxx/CVE-2018-9976.json M 2018/9xxx/CVE-2018-9977.json M 2018/9xxx/CVE-2018-9978.json M 2018/9xxx/CVE-2018-9979.json M 2018/9xxx/CVE-2018-9980.json M 2018/9xxx/CVE-2018-9981.json M 2018/9xxx/CVE-2018-9982.json M 2018/9xxx/CVE-2018-9983.json M 2018/9xxx/CVE-2018-9984.json
2018-05-16 19:25:28 -05:00
{
2019-03-18 02:47:57 +00:00
"lang": "eng",
"value": "This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of the record append method. The issue results from the lack of proper validation of user-supplied data, which can result in a type confusion condition. An attacker can leverage this vulnerability to execute code under the context of the current process. Was ZDI-CAN-5375."
ZDI assigns the following CVEs: M 2018/10xxx/CVE-2018-10473.json M 2018/10xxx/CVE-2018-10474.json M 2018/10xxx/CVE-2018-10475.json M 2018/10xxx/CVE-2018-10476.json M 2018/10xxx/CVE-2018-10477.json M 2018/10xxx/CVE-2018-10478.json M 2018/10xxx/CVE-2018-10479.json M 2018/10xxx/CVE-2018-10480.json M 2018/10xxx/CVE-2018-10481.json M 2018/10xxx/CVE-2018-10482.json M 2018/10xxx/CVE-2018-10483.json M 2018/10xxx/CVE-2018-10484.json M 2018/10xxx/CVE-2018-10485.json M 2018/10xxx/CVE-2018-10486.json M 2018/10xxx/CVE-2018-10487.json M 2018/10xxx/CVE-2018-10488.json M 2018/10xxx/CVE-2018-10489.json M 2018/10xxx/CVE-2018-10490.json M 2018/10xxx/CVE-2018-10491.json M 2018/10xxx/CVE-2018-10492.json M 2018/10xxx/CVE-2018-10493.json M 2018/10xxx/CVE-2018-10494.json M 2018/10xxx/CVE-2018-10495.json M 2018/1xxx/CVE-2018-1173.json M 2018/1xxx/CVE-2018-1174.json M 2018/1xxx/CVE-2018-1175.json M 2018/1xxx/CVE-2018-1176.json M 2018/1xxx/CVE-2018-1177.json M 2018/1xxx/CVE-2018-1178.json M 2018/1xxx/CVE-2018-1179.json M 2018/1xxx/CVE-2018-1180.json M 2018/9xxx/CVE-2018-9935.json M 2018/9xxx/CVE-2018-9936.json M 2018/9xxx/CVE-2018-9937.json M 2018/9xxx/CVE-2018-9938.json M 2018/9xxx/CVE-2018-9939.json M 2018/9xxx/CVE-2018-9940.json M 2018/9xxx/CVE-2018-9941.json M 2018/9xxx/CVE-2018-9942.json M 2018/9xxx/CVE-2018-9943.json M 2018/9xxx/CVE-2018-9944.json M 2018/9xxx/CVE-2018-9945.json M 2018/9xxx/CVE-2018-9946.json M 2018/9xxx/CVE-2018-9947.json M 2018/9xxx/CVE-2018-9948.json M 2018/9xxx/CVE-2018-9949.json M 2018/9xxx/CVE-2018-9950.json M 2018/9xxx/CVE-2018-9951.json M 2018/9xxx/CVE-2018-9952.json M 2018/9xxx/CVE-2018-9953.json M 2018/9xxx/CVE-2018-9954.json M 2018/9xxx/CVE-2018-9955.json M 2018/9xxx/CVE-2018-9956.json M 2018/9xxx/CVE-2018-9957.json M 2018/9xxx/CVE-2018-9958.json M 2018/9xxx/CVE-2018-9959.json M 2018/9xxx/CVE-2018-9960.json M 2018/9xxx/CVE-2018-9961.json M 2018/9xxx/CVE-2018-9962.json M 2018/9xxx/CVE-2018-9963.json M 2018/9xxx/CVE-2018-9964.json M 2018/9xxx/CVE-2018-9965.json M 2018/9xxx/CVE-2018-9966.json M 2018/9xxx/CVE-2018-9967.json M 2018/9xxx/CVE-2018-9968.json M 2018/9xxx/CVE-2018-9969.json M 2018/9xxx/CVE-2018-9970.json M 2018/9xxx/CVE-2018-9971.json M 2018/9xxx/CVE-2018-9972.json M 2018/9xxx/CVE-2018-9973.json M 2018/9xxx/CVE-2018-9974.json M 2018/9xxx/CVE-2018-9975.json M 2018/9xxx/CVE-2018-9976.json M 2018/9xxx/CVE-2018-9977.json M 2018/9xxx/CVE-2018-9978.json M 2018/9xxx/CVE-2018-9979.json M 2018/9xxx/CVE-2018-9980.json M 2018/9xxx/CVE-2018-9981.json M 2018/9xxx/CVE-2018-9982.json M 2018/9xxx/CVE-2018-9983.json M 2018/9xxx/CVE-2018-9984.json
2018-05-16 19:25:28 -05:00
}
2019-03-18 02:47:57 +00:00
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "CWE-704-Incorrect Type Conversion or Cast"
}
]
}
]
},
"references": {
"reference_data": [
{
"name": "https://zerodayinitiative.com/advisories/ZDI-18-325",
"refsource": "MISC",
"url": "https://zerodayinitiative.com/advisories/ZDI-18-325"
},
{
"name": "https://www.foxitsoftware.com/support/security-bulletins.php",
"refsource": "CONFIRM",
"url": "https://www.foxitsoftware.com/support/security-bulletins.php"
}
]
}
}