PT-2021-4691 · Foxit · Foxit Pdf Reader+2

Published

2021-10-12

·

Updated

2022-09-02

·

CVE-2021-41783

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Foxit PDF Reader versions prior to 11.1 Foxit PDF Editor versions prior to 11.1 Foxit PhantomPDF versions prior to 10.1.6
Description The issue is related to a buffer overflow in memory, which can be exploited by a remote attacker to execute arbitrary code. The problem arises from the mishandling of JavaScript, allowing attackers to trigger a use-after-free and execute arbitrary code.
Recommendations For Foxit PDF Reader versions prior to 11.1, update to version 11.1 or later. For Foxit PDF Editor versions prior to 11.1, update to version 11.1 or later. For Foxit PhantomPDF versions prior to 10.1.6, update to version 10.1.6 or later.

Fix

Buffer Overflow

Use After Free

Weakness Enumeration

Related Identifiers

BDU:2021-05388
CVE-2021-41783

Affected Products

Foxit Pdf Editor
Foxit Pdf Reader
Foxit Phantompdf