Foxit.Reader.FileAttachment.Memory.Corruption

description-logoDescription

This indicates an attack attempt to exploit a Use After Free Vulnerability in Foxit Reader.
The vulnerability is due to an error in the vulnerable application when handling a maliciously crafted PDF. An attacker can exploit this by tricking an unsuspecting user to open a craft PDF file to execute arbitrary code within the context of the application.

affected-products-logoAffected Products

Foxit Reader 10.1.3.37598

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Apply the most recent upgrade or patch from the vendor.
https://www.foxitsoftware.com/pdf-reader/

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2021-05-20 18.083 Default_action:pass:drop
2021-05-11 18.078