A vulnerability exists in the latest build of Foxit Reader, a PDF reader produced by the Foxit Corp., that could allow an attacker to inject malicious code into documents. To exploit Foxit, an attacker must get a user to open a PDF document on the web via an especially long URL. A boundary error in the reader s browser plugin (NPFoxItReader plugin) can t handle excessively long URLs and in turn, triggers a stack-based buffer overflow. Since the vulnerability can lead to system compromise, Secunia has classified the vulnerability as highly critical.
Source: https://threatpost.com/critical-vulnerability-identified-foxit-reader-011013/77391/

