First published: Mon Feb 26 2018(Updated: )
A denial-of-service issue was discovered in the Foxit MobilePDF app before 6.1 for iOS. This occurs when a user uploads a file that includes a hexadecimal Unicode character in the "filename" parameter via Wi-Fi, since the app could fail to parse this.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Foxit Software MobilePDF | <=6.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2017-16813 is classified as a denial-of-service vulnerability.
CVE-2017-16813 affects users by causing the Foxit MobilePDF app to potentially crash when handling specific malformed filenames.
Foxit MobilePDF versions prior to 6.1 for iOS are impacted by CVE-2017-16813.
Users can mitigate the risks by avoiding the upload of files with hexadecimal Unicode characters in the filename.
Yes, users should update to Foxit MobilePDF version 6.1 or later to resolve CVE-2017-16813.