Secunia Advisory SA37049Foxit Reader Firefox Plugin Memory Corruption Vulnerability
|
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
Description
A vulnerability has been discovered in Foxit Reader, which can be exploited by malicious people to potentially compromise a user's system. The vulnerability is caused due to an error in the Foxit Reader plugin for Firefox (npFoxitReaderPlugin.dll). This can be exploited to trigger a memory corruption by tricking a user into visiting a specially crafted web page which repeatedly loads and unloads the plugin. Successful exploitation may allow execution of arbitrary code. This is related to vulnerability #12 in: SA36983 The vulnerability is confirmed with Foxit Reader version 3.1.2.1013 and Mozilla Firefox 3.5.3. Other versions may also be affected. Solution Provided and/or discovered by Other references Deep Links Do you have additional information related to this advisory?Please provide information about patches, mitigating factors, new versions, exploits, faulty patches, links, and other relevant data by posting comments to this Advisory. You can also send this information to vuln@secunia.com
|
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
152 views | ![]() |
| Gentoo update for sarg | |
211 views | ![]() |
| Debian update for freetype | |