CVE-2019-13124: High severity foxit reader vulnerability
Published Sep 30, 2019
·Updated
Foxit Reader 9.6.0.25114 and earlier has two unique RecursiveCall bugs involving 3 functions exhausting available stack memory because of Uncontrolled Recursion in the V8 JavaScript engine (issue 2 of 2).
Affected Software
2 affected components
Foxitsoftware Foxit Reader<=9.6.0.25114
Microsoft Windows
Remediation
Patch Available
Event History
Sep 30, 2019
CVE Published
via MITRE·07:29 PM
Data Sourced
via MITRE·07:29 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-13124?
CVE-2019-13124 has been classified as a high severity vulnerability due to its potential to cause denial of service by exhausting stack memory.
2
How do I fix CVE-2019-13124?
To fix CVE-2019-13124, upgrade Foxit Reader to version 9.6.1 or later.
3
What are the main issues caused by CVE-2019-13124?
CVE-2019-13124 can lead to uncontrolled recursion in the V8 JavaScript engine, causing stack exhaustion.
4
What versions of Foxit Reader are affected by CVE-2019-13124?
Foxit Reader versions up to and including 9.6.0.25114 are affected by CVE-2019-13124.
5
Is any operating system at risk from CVE-2019-13124?
CVE-2019-13124 primarily affects the Foxit Reader software on Windows operating systems.