Kaspersky ID:
KLA73578
Дата обнаружения:
26/09/2024
Обновлено:
25/03/2025

Описание

Multiple vulnerabilities were found in Foxit Reader. Malicious users can exploit these vulnerabilities to cause denial of service, execute arbitrary code, gain privileges.

Below is a complete list of vulnerabilities:

  1. Implementation vulnerability in FoxitPDFReaderUpdater.exe can be exploited to cause denial of service.
  2. A remote code execution vulnerability in Foxit Reader can be exploited remotely to execute arbitrary code.
  3. Privilege Escalation vulnerability in Update Service can be exploited to execute arbitrary code or delete arbitrary files.
  4. Out of bounds memory read vulnerability in Foxit Reader can be exploited to cause denial of service.
  5. An elevation of privilege vulnerability in Foxit Reader can be exploited remotely to gain privileges.

Первичный источник обнаружения

Эксплуатация

Public exploits exist for this vulnerability.

Связанные продукты

Список CVE

  • CVE-2024-41605
    critical
  • CVE-2024-28888
    critical
  • CVE-2024-38393
    unknown
  • CVE-2024-9249
    high
  • CVE-2024-9255
    critical
  • CVE-2024-9250
    critical
  • CVE-2024-9254
    critical
  • CVE-2024-9244
    critical
  • CVE-2024-9245
    critical
  • CVE-2024-9243
    critical
  • CVE-2024-9246
    high
  • CVE-2024-9247
    critical
  • CVE-2024-9251
    critical
  • CVE-2024-9253
    high
  • CVE-2024-9248
    critical
  • CVE-2024-9252
    critical
  • CVE-2024-9256
    high

Смотрите также

Узнай статистику распространения уязвимостей в своем регионе statistics.securelist.com

Нашли неточность в описании этой уязвимости? Дайте нам знать!
Kaspersky IT Security Calculator:
Оцените ваш профиль кибербезопасности
Узнать больше
Встречай новый Kaspersky!
Каждая минута твоей онлайн-жизни заслуживает топовой защиты.
Узнать больше
Confirm changes?
Your message has been sent successfully.