

NOTE: All the analysis in this section was done with Foxit Reader V7.34. Specifically, we’ll demonstrate this by writing a small wrapper that allows us to fuzz faster and analyze cases quicker. This blog talks about how to fuzz the image conversion feature of Foxit without fuzzing the whole application.


Foxit Reader is one of the more interesting PDF readers as it is able to convert multiple image formats to PDF documents. In the past few years, we at the ZDI have seen a spike in image parsing vulnerabilities targeting PDF readers, many of which include targeting the image conversion feature. Adobe Reader, Foxit and PDF-XChange all work (other might as well but are. While this feature is quite helpful, it does come with a security cost, and that price tag is pretty high. For Zotero Firefox, this option is set to the Firefox download folder by. And by image conversion, I’m specifically referring to converting an image file to a PDF file. For example, a lot of the PDF readers support image conversion, including Adobe Acrobat Pro (DC) and Foxit Reader (and PhantomPDF). Easy to Use - Foxit PhantomPDF has an easy to use interface, making it simple for different people using it for the first time. Many of these readers support more features than just navigating a PDF. PDF readers are an essential part of our daily workflow nowadays.
