Foxit · Foxit Reader · CVE-2016-4063
**Name of the Vulnerable Software and Affected Versions**
Foxit Reader versions prior to 7.3.4
PhantomPDF versions prior to 7.3.4
**Description**
The issue is related to a use-after-free vulnerability that allows remote attackers to execute arbitrary code. This is achieved via an object with a revision number of -1 in a PDF document.
**Recommendations**
For Foxit Reader versions prior to 7.3.4, update to version 7.3.4 or later.
For PhantomPDF versions prior to 7.3.4, update to version 7.3.4 or later.