EIP-2026-115283

PRE-CVE

Foxit Reader 5.4.3.x < 5.4.5.0124 - PDF XREF Parsing Denial of Service

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-115283. PoCs published by FuzzMyApp.

AI-analyzed exploit summary The exploit describes a Denial of Service (DoS) vulnerability in Foxit Reader versions 5.4.3.* to 5.4.5.0124 due to improper validation of the PDF Cross Reference Table (XREF) header, leading to an integer division by zero exception. The analysis includes disassembly snippets and references to a PoC PDF file.

Description

Foxit Reader 5.4.3.x < 5.4.5.0124 - PDF XREF Parsing Denial of Service

Exploits (1)

exploitdb WRITEUP VERIFIED
by FuzzMyApp · textdoswindows
https://www.exploit-db.com/exploits/24962

The exploit describes a Denial of Service (DoS) vulnerability in Foxit Reader versions 5.4.3.* to 5.4.5.0124 due to improper validation of the PDF Cross Reference Table (XREF) header, leading to an integer division by zero exception. The analysis includes disassembly snippets and references to a PoC PDF file.

Classification
Writeup 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Foxit Reader 5.4.3.* - 5.4.5.0124
No auth needed
Prerequisites: A maliciously crafted PDF file with a tampered XREF header
mistral-large-3 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026