CVE-2021-41780: Use After Free
Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-after-free and execute arbitrary code because JavaScript is mishandled.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-41780?
CVE-2021-41780 is a vulnerability in Foxit PDF Reader, PDF Editor, and PhantomPDF that allows attackers to trigger a use-after-free and execute arbitrary code.
How does CVE-2021-41780 impact Foxit PDF Reader, PDF Editor, and PhantomPDF?
CVE-2021-41780 allows attackers to trigger a use-after-free vulnerability in Foxit PDF Reader, PDF Editor, and PhantomPDF, which can lead to arbitrary code execution.
What is the severity of CVE-2021-41780?
The severity of CVE-2021-41780 is high with a CVSSv3 score of 7.8.
How can I fix CVE-2021-41780 in Foxit PDF Reader, PDF Editor, and PhantomPDF?
To fix CVE-2021-41780, it is recommended to update Foxit PDF Reader, PDF Editor, and PhantomPDF to version 11.1 for PDF Reader and PDF Editor, and version 10.1.6 for PhantomPDF. Additionally, make sure to apply any security patches provided by the vendor.
Where can I find more information about CVE-2021-41780?
For more information about CVE-2021-41780, you can refer to the Foxit security bulletins available at the following link: [https://www.foxit.com/support/security-bulletins.html](https://www.foxit.com/support/security-bulletins.html)