PT-2022-18157 · Foxit · Foxit Pdf Reader+1

Published

2022-05-05

·

Updated

2022-08-10

·

CVE-2022-26979

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Foxit PDF Reader versions prior to 12.0.1 Foxit PDF Editor versions prior to 12.0.1
Description The issue allows a NULL pointer dereference when this.Span is used for oState of Collab.addStateModel, because this.Span.text can be NULL.
Recommendations For Foxit PDF Reader versions prior to 12.0.1, update to version 12.0.1 or later. For Foxit PDF Editor versions prior to 12.0.1, update to version 12.0.1 or later.

Exploit

Fix

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-26979

Affected Products

Foxit Pdf Editor
Foxit Pdf Reader