KLA12241
Multiple vulnerabilities in Foxit Reader

Updated: 05/16/2022
Detect date
?
07/27/2021
Severity
?
Warning
Description

Multiple vulnerabilities were found in Foxit Reader. Malicious users can exploit these vulnerabilities to execute arbitrary code, cause denial of service, obtain sensitive information.

Below is a complete list of vulnerabilities:

  1. Use after free vulnerability can be exploited to execute arbitrary code.
  2. Use after free vulnerability can be exploited to cause denial of service.
  3. Use after free vulnerability can be exploited to cause denial of service and execute arbitrary code.
  4. Information disclosure and out of bounds read vulnerability in the util.scand function can be exploited to obtain sensitive information and cause denial of service.
Affected products

Foxit Reader earlier than 11.0.1

Solution

Update to the latest version
Download Foxit Reader

Original advisories

Foxit Security Bulletins

Impacts
?
ACE 
[?]

OSI 
[?]

DoS 
[?]
Related products
Foxit Reader
CVE-IDS
?
Find out the statistics of the vulnerabilities spreading in your region