First published: Fri Oct 02 2020(Updated: )
An issue was discovered in Foxit Reader and PhantomPDF before 10.1. If TslAlloc attempts to allocate thread local storage but obtains an unacceptable index value, V8 throws an exception that leads to a write access violation (and read access violation).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Foxitsoftware Foxit Reader | <10.1 | |
Foxitsoftware Phantompdf | <10.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-26535.
The severity of CVE-2020-26535 is critical.
Foxit Reader and PhantomPDF versions before 10.1 are affected.
Update Foxit Reader and PhantomPDF to version 10.1 or later.
More information about CVE-2020-26535 can be found at the following link: [https://www.foxitsoftware.com/support/security-bulletins.html](https://www.foxitsoftware.com/support/security-bulletins.html).