CVE-2009-3459

Heap-based buffer overflow in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 allows remote attackers to execute arbitrary code via a crafted PDF file that triggers memory corruption, as exploited in the wild in October 2009. NOTE: some of these details are obtained from third party information.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
adobeCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 99%
VendorProductVersion
adobeacrobat
𝑥
≤ 9.1.3
adobeacrobat
3.0
adobeacrobat
3.1
adobeacrobat
4.0
adobeacrobat
4.0.5
adobeacrobat
4.0.5a:a
adobeacrobat
4.0.5c:c
adobeacrobat
5.0
adobeacrobat
5.0.5
adobeacrobat
5.0.6
adobeacrobat
5.0.10
adobeacrobat
6.0
adobeacrobat
6.0.1
adobeacrobat
6.0.2
adobeacrobat
6.0.3
adobeacrobat
6.0.4
adobeacrobat
6.0.5
adobeacrobat
7.0
adobeacrobat
7.0.1
adobeacrobat
7.0.2
adobeacrobat
7.0.3
adobeacrobat
7.0.4
adobeacrobat
7.0.5
adobeacrobat
7.0.6
adobeacrobat
7.0.7
adobeacrobat
7.0.8
adobeacrobat
7.0.9
adobeacrobat
7.1.3
adobeacrobat
8.0
adobeacrobat
8.1
adobeacrobat
8.1.1
adobeacrobat
8.1.2
adobeacrobat
8.1.3
adobeacrobat
8.1.4
adobeacrobat
8.1.6
adobeacrobat
9.0.0
adobeacrobat
9.1
adobeacrobat
9.1.1
adobeacrobat
9.1.2
adobeacrobat_reader
𝑥
≤ 9.0
adobereader
3.0
adobereader
4.0
adobereader
4.0.5
adobereader
4.0.5a:a
adobereader
4.0.5c:c
adobereader
4.5
adobereader
5.0
adobereader
5.0.5
adobereader
5.0.6
adobereader
5.0.7
adobereader
5.0.9
adobereader
5.0.10
adobereader
5.0.11
adobereader
5.1
adobereader
6.0
adobereader
6.0.1
adobereader
6.0.2
adobereader
6.0.3
adobereader
6.0.4
adobereader
6.0.5
adobereader
7.0.1
adobereader
7.0.2
adobereader
7.0.3
adobereader
7.0.5
adobereader
7.0.7
adobereader
7.0.8
adobereader
7.0.9
adobereader
7.1.0
adobereader
7.1.1
adobereader
7.1.3
adobereader
8.1.1
adobereader
8.1.2
adobereader
8.1.4
adobereader
8.1.6
adobereader
9.0
adobereader
9.1
adobereader
9.1.2
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
acroread
karmic
Fixed 9.2-1karmic1
released
jaunty
Fixed 9.2-1jaunty1
released
intrepid
Fixed 9.2-1intrepid2
released
hardy
Fixed 9.2-1
released
dapper
ignored