Use-After-Free Vulnerability in Foxit Reader by Foxit Software
CVE-2024-25938
What is CVE-2024-25938?
A use-after-free vulnerability has been identified in Foxit Reader 2024.1.0.23997 that affects the handling of Barcode widgets. This flaw arises when specially crafted JavaScript code within a malicious PDF document is executed, leading to the reuse of a previously freed memory object. Such scenarios can result in memory corruption, potentially allowing attackers to execute arbitrary code on the affected systems. Users can be exploited by tricking them into opening altered PDF files, or simply by visiting a crafted malicious website if they have the browser plugin for Foxit Reader enabled.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Foxit Reader 2024.1.0.23997