Windows users need to update this software immediately
Foxit Reader is one of the most popular software for reading and editing PDF files.
According to Bleeping Computer, Foxit Software said that about 650 million users from 200 countries are using the store's Foxit Reader, including large enterprise customers such as Google, Intel, Dell, NASDAQ, Chevron, British Airways. , HP, Lenovo and Asus.
Recently, Foxit Software released a security update to fix a high severity remote code execution (RCE) vulnerability affecting Foxit Reader.
Bleeping Computer said that this security vulnerability was discovered by Cisco Talos security expert Aleksandar Nikolic, which could allow attackers to execute malicious code on a user's Windows computer remotely and potentially hijack. control.
This critical vulnerability is the result of a "Use After Free" bug found in the V8 JavaScript engine, used by Foxit Reader to render dynamic forms and interactive document elements.
This error can lead to serious problems such as program crashes, data corruption, and allowing hackers to execute arbitrary code on a victim's computer running a vulnerable version of the software.
This security vulnerability is caused by the way Foxit Reader application and browser extensions handle certain types of annotations.
In this way, attackers can use them to create malicious PDFs that allow them to run arbitrary code through precise memory control.
'A specially crafted PDF document can trigger the reuse of previously free memory, which can result in arbitrary code execution,' says security expert Nikolic.
However, an attacker needs to trick users into opening a malicious file or website to trigger this vulnerability if the browser plugin extension is enabled.
It is known that the security vulnerability affects Foxit Reader version 10.1.3.37598 and earlier versions. This vulnerability has been fixed on Foxit Reader version 10.1.4.37651.
Users can download the latest version of Foxit Reader by clicking Check for Updates in the application's Help dialog.
You should read it
- Discover two important zero-day vulnerabilities in Foxit PDF Reader
- How to rotate PDF files on Foxit Reader
- How to set up voice text reading mode in Foxit Reader?
- How to join PDF files with Foxit Reader
- Insert image into PDF file with Foxit Reader
- How to rotate a PDF file in Foxit Reader when reversed is simple
- How to turn on full screen mode when reading PDF files using Foxit Reader
- Top 5 best PDF reader apps on Android
May be interested
- Chrome, Edge and Firefox cannot be opened after updating Windows 10, 11recently, microsoft has released the patch tuesday april 2022 update to patch a series of serious vulnerabilities on both windows 11, windows 10 and older versions of windows. to ensure safety, microsoft recommends that users update windows immediately.
- Microsoft warns users to immediately remove the latest update on Windows 10according to the latest information from microsoft, the windows 10 update kb4515384 is causing a quite serious error that causes the computer to automatically disable ethernet and wifi connections.
- Google releases an urgent update for Chrome, users should update immediatelygoogle has rolled out emergency updates for chrome users on both windows, macos and linux to patch a critical flaw.
- Instructions for updating software for Mac detailsyou may already know the problems that outdated software will cause. but how do you know if your computer is completely up to date? so, understand how to update the mac and how the software works.
- Microsoft Explains Why Some Computers Update Windows Failsin the past time, microsoft has been very active in promoting users to update to the latest versions of windows 10 and windows 11. however, despite microsoft's zeal, there are still many users who fail to update. what is the cause?
- Glarysoft Software Update Pro, install a series of software after installing Windows with just 1 clickafter reinstalling windows, finding, downloading, and installing software is always a thing of a lot of people. but with glarysoft software update pro, users only need to click once to install a series of popular software.
- Apple released iOS 14.2.1: Fix many bugs on iPhone 12, users should update immediatelythose who are using iphone 12 series products should immediately update ios 14.2.1 to get the best user experience.
- Extremely dangerous zero-day vulnerability on Chrome: Users update now!immediately after clicking on the phishing link in the email, the user's system is immediately compromised.
- How to fix some errors when updating Windows 10besides the exciting new features, the windows 10 update also has some problems during and after installing the software. read this article to learn how to fix some of the most common problems of this update.
- How to change, prolong the delay of updating on Windows 10?on windows 10 profesional, enterprise and education versions are allowed to postpone updates (update), so users will not have to download the update for a while. you can use local group policy to set a delay time other than the default time.