CVE-2018-19389: Medium severity foxit reader vulnerability
Published Nov 20, 2018
·Updated
FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (Break instruction exception and application crash) via BMP data because of a ConvertToPDFx86!ConnectedPDF::ConnectedPDFSDK::FCPSendEmailNotification issue.
Affected Software
1 affected component
Foxitsoftware Foxit Reader=9.3.0.10826
Event History
Nov 20, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-19389?
CVE-2018-19389 is classified as a denial of service vulnerability.
2
How do I fix CVE-2018-19389?
To fix CVE-2018-19389, update Foxit Reader to the latest version that addresses this vulnerability.
3
What is the impact of CVE-2018-19389?
CVE-2018-19389 allows remote attackers to cause a denial of service by crashing the application.
4
Which versions of Foxit Reader are affected by CVE-2018-19389?
CVE-2018-19389 specifically affects Foxit Reader version 9.3.0.10826.
5
Can CVE-2018-19389 be exploited remotely?
Yes, CVE-2018-19389 can be exploited remotely via specially crafted BMP data.