CVE Published: 08/10/2018 |
CVE Updated: 16/09/2024 |
CVE Year: 2018 Source: talos |
Vendor: Foxit Software |
Product: Foxit PDF Reader Status : PUBLISHED
CVE-2018-3940 Description
An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software\'s PDF Reader, version 9.1.0.5096. A specially crafted PDF document can trigger a previously freed object in memory to be reused. An attacker needs to trick the user to open the malicious file to trigger.