Use-after-free vulnerability in Foxit Reader and PhantomPDF 7.3.4.311 and earlier on Windows allows remote attackers to cause a denial of service (application crash) and execute arbitrary code via a crafted PDF file.
References
Link | Resource |
---|---|
https://www.foxitsoftware.com/support/security-bulletins.php | Vendor Advisory |
https://fortiguard.com/zeroday/FG-VD-16-021 | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2018-02-07 09:29
Updated : 2018-02-24 13:50
NVD link : CVE-2016-6168
Mitre link : CVE-2016-6168
JSON object : View
CWE
CWE-416
Use After Free
Products Affected
foxitsoftware
- foxit_reader
- phantompdf