Security restrictions bypass in Foxit PDF Reader for Windows and Foxit PDF Editor (formerly Foxit PhantomPDF) - CVE-2018-18688

 

Security restrictions bypass in Foxit PDF Reader for Windows and Foxit PDF Editor (formerly Foxit PhantomPDF) - CVE-2018-18688

Published: January 4, 2019


Vulnerability identifier: #VU16795
CSH Severity: Low
CVSS v4: 4.6 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-18688
CWE-ID: CWE-20
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to bypass security restrictions.

The vulnerability exists due to incorrect validation result when validating certain PDF file that is modified maliciously or contains non-standard signatures. A remote attacker can create a specially crafted PDF file, trick the victim into opening it and bypass signature validation.


Affected software

Foxit PDF Reader for Windows
Foxit PDF Editor (formerly Foxit PhantomPDF)

How to mitigate CVE-2018-18688

Update to version 9.4.

Foxit PDF Reader for Windows - update to 9.4
Foxit PDF Editor (formerly Foxit PhantomPDF) - update to 9.4

External References

Related Security Bulletins