Foxit Reader Security Update Advisory

Overview

 

We have released an update to address a vulnerability in Foxit Reader. users of affected versions are advised to update to the latest version.

 

Affected Products

 

Foxit Reader 2024.1.0.23997 or below

 

Resolved Vulnerabilities

 

Free after use vulnerability in the way ComboBox widgets are handled in Foxit Reader (CVE-2024-25648)

 

Vulnerability Patches

 

Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

Foxit Reader version 2024.2

 

Referenced Sites

 

[1] CVE-2024-25648 Detail

https://nvd.nist.gov/vuln/detail/CVE-2024-25648
[2] Talos Vulnerability Report

https://talosintelligence.com/vulnerability_reports/TALOS-2024-1959

[3] Security updates available in Foxit PDF Reader 2024.2 and Foxit PDF Editor 2024.2

https://www.foxit.com/support/security-bulletins.html