First published: Wed Aug 11 2021(Updated: )
An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows DLL hijacking, aka CNVD-C-2021-68000 and CNVD-C-2021-68502.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Foxitsoftware Foxit Reader | <10.1.4 | |
Foxitsoftware Phantompdf | <9.7.5.29616 | |
Foxitsoftware Phantompdf | >=10.0.0.0<10.1.4 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-38571 is a DLL hijacking vulnerability in Foxit Reader and PhantomPDF.
CVE-2021-38571 has a severity rating of 7.8 (high).
Foxit Reader versions up to but not including 10.1.4, PhantomPDF versions up to but not including 9.7.5.29616, and PhantomPDF versions up to but not including 10.1.4 are affected.
To fix CVE-2021-38571, update Foxit Reader to version 10.1.4 or higher, and update PhantomPDF to version 9.7.5.29616 or higher.
More information about CVE-2021-38571 can be found at the following URL: https://www.foxitsoftware.com/support/security-bulletins.php