PT-2020-6834 · Foxit · Foxit Pdf Editor+1
Published
2020-02-14
·
Updated
2025-04-04
·
CVE-2022-47881
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Foxit PDF Reader and PDF Editor versions 11.2.1.53537 and earlier
Description
The issue is related to an out-of-bounds read operation in memory, which can be exploited by opening a specially crafted malicious file or page, allowing a remote attacker to gain unauthorized access to protected information. This can lead to the disclosure of sensitive information and affect the system.
Recommendations
For Foxit PDF Reader and PDF Editor versions 11.2.1.53537 and earlier, update to a version later than 11.2.1.53537 to resolve the issue. As a temporary workaround, consider avoiding the use of potentially vulnerable functions related to file or page processing until a patch is available. Restrict access to untrusted files and pages to minimize the risk of exploitation.
Fix
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Foxit Pdf Editor
Foxit Pdf Reader