CVE-2018-19448

CVE-2018-19448

In Foxit Reader SDK (ActiveX) Professional 5.4.0.1031, an uninitialized object in IReader_ContentProvider::GetDocEventHandler occurs when embedding the control into Office documents. By opening a specially crafted document, an attacker can trigger an out of bounds write condition, possibly leveraging this to gain remote code execution.

Source: CVE-2018-19448

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다