CVE-2018-19342: High severity foxit reader vulnerability
The u3d plugin 9.3.0.10809 (aka plugins\U3DBrowser.fpi) in FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (out-of-bounds read) or obtain sensitive information via a U3D sample because of a "Read Access Violation starting at U3DBrowser+0x000000000000347a" issue.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-19342?
CVE-2018-19342 has a moderate severity level, primarily causing denial of service and exposing sensitive information.
How do I fix CVE-2018-19342?
To fix CVE-2018-19342, update Foxit Reader to the latest version that mitigates this vulnerability.
What products are affected by CVE-2018-19342?
CVE-2018-19342 affects Foxit Reader version 9.3.0.10826 and the u3d plugin version 9.3.0.10809.
What type of vulnerability is CVE-2018-19342?
CVE-2018-19342 is categorized as an out-of-bounds read vulnerability in the U3D plugin.
Can CVE-2018-19342 be exploited remotely?
Yes, CVE-2018-19342 can be exploited remotely to cause denial of service or potentially leak sensitive information.