NULL pointer dereference in Foxit PDF Editor (formerly Foxit PhantomPDF) and Foxit PDF Reader for Windows - #VU62886
Published: May 9, 2022 / Updated: June 21, 2022
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a NULL pointer dereference error when executing JavaScripts in certain PDF files. A remote attacker can trick the victim to open a specially crafted PDF file and perform a denial of service (DoS) attack.
Affected software
Foxit PDF Reader for Windows
Remediation
Foxit PDF Reader for Windows - update to 11.2.2.53575