CVE-2010-1239
Description
Foxit Reader before 3.2.1.0401 allows remote attackers to (1) execute arbitrary local programs via a certain "/Type /Action /S /Launch" sequence, and (2) execute arbitrary programs embedded in a PDF document via an unspecified "/Launch /Action" sequence, a related issue to CVE-2009-0836.
Predictions
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ if you've already worked around this in production โ publish your fix to the community-verified tier.
โ Propose a mitigation on Community โ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
Exploits
Public proof-of-concept code below. AS-IS, for defenders and authorised testing only.
Exploit-DB
Adobe Reader - Escape From '.PDF' Execute Embedded Executable
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| foxitsoftware | foxit_reader | {"endIncluding":"3.2.0.0303"} | |
| foxitsoftware | foxit_reader | 2.3 | |
| foxitsoftware | foxit_reader | 3.0 | |
| foxitsoftware | foxit_reader | 3.1.0.0824 | |
| foxitsoftware | foxit_reader | 3.1.1.0901 | |
| foxitsoftware | foxit_reader | 3.1.1.0928 | |
| foxitsoftware | foxit_reader | 3.1.3.1030 | |
References
- http://blog.didierstevens.com/2010/03/29/escape-from-pdf/
- http://blog.didierstevens.com/2010/03/31/escape-from-foxit-reader/
- http://www.f-secure.com/weblog/archives/00001923.html
- http://www.foxitsoftware.com/announcements/2010420408.html
- http://www.foxitsoftware.com/pdf/reader/security.htm#0401
- http://www.kb.cert.org/vuls/id/570177
- http://blog.didierstevens.com/2010/03/29/escape-from-pdf/
- http://blog.didierstevens.com/2010/03/31/escape-from-foxit-reader/
- http://www.f-secure.com/weblog/archives/00001923.html
- http://www.foxitsoftware.com/announcements/2010420408.html
- http://www.foxitsoftware.com/pdf/reader/security.htm#0401
- http://www.kb.cert.org/vuls/id/570177
CWEs
CWE-94
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.