CVE-2019-13123: High severity foxit reader vulnerability
Published Sep 30, 2019
·Updated
Foxit Reader 9.6.0.25114 and earlier has two unique RecursiveCall bugs involving 3 functions exhausting available stack memory because of Uncontrolled Recursion in the V8 JavaScript engine (issue 1 of 2).
Affected Software
2 affected components
Foxitsoftware Foxit Reader<=9.6.0.25114
Microsoft Windows
Remediation
Patch Available
Event History
Sep 30, 2019
CVE Published
via MITRE·07:18 PM
Data Sourced
via MITRE·07:18 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-13123?
CVE-2019-13123 has a medium severity rating due to potential exploitation leading to application crashes.
2
How do I fix CVE-2019-13123?
To fix CVE-2019-13123, update Foxit Reader to version 9.6.1 or later.
3
What causes the CVE-2019-13123 vulnerability?
CVE-2019-13123 is caused by uncontrolled recursion in the V8 JavaScript engine in Foxit Reader.
4
Which versions of Foxit Reader are affected by CVE-2019-13123?
Foxit Reader versions 9.6.0.25114 and earlier are affected by CVE-2019-13123.
5
Can CVE-2019-13123 be exploited remotely?
CVE-2019-13123 can potentially be exploited remotely if malicious JavaScript is executed in Foxit Reader.