KLA12317
Multiple vulnerabilities in Foxit Reader

Обновлено: 26/10/2021
Дата обнаружения
12/10/2021
Уровень угрозы
Warning
Описание

Multiple vulnerabilities were found in Foxit Reader. Malicious users can exploit these vulnerabilities to execute arbitrary code, obtain sensitive information, cause denial of service.

Below is a complete list of vulnerabilities:

  1. Code execution vulnerability can be exploited via special crafted file to execute arbitrary code.
  2. Use after free vulnerability can be exploited remotely to cause denial of service, obtain sensitive information or execute arbitrary code.
  3. Use after free vulnerability can be exploited to cause denial of service, obtain sensitive information or execute arbitrary code.
  4. Use after free vulnerability can be exploited remotely to obtain sensitive information or execute arbitrary code.
  5. Out of bounds read vulnerability can be exploited via special PDF files to obtain sensitive information.
  6. Heap-based buffer overflow vulnerability can be exploited remotely to execute arbitrary code and cause denial of service.
  7. Information disclosure vulnerability can be exploited to obtain sensitive information.
Пораженные продукты

Foxit Reader earlier than 11.1

Решение

Update to the latest version
Download Foxit Reader

Первичный источник обнаружения
Foxit Security Bulletins
Оказываемое влияние
?
ACE 
[?]

OSI 
[?]

DoS 
[?]
Связанные продукты
Foxit Reader
Узнай статистику распространения уязвимостей в твоем регионе