CVE-2009-2994

Adobe Acrobat < 9.1.3 - Memory Corruption

Title source: rule
STIX 2.1

Description

Buffer overflow in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 might allow attackers to execute arbitrary code via unspecified vectors.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Felipe Andres Manzano · pythonlocalwindows
https://www.exploit-db.com/exploits/9865

References (6)

Core 6
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/36638
Patch, US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA09-286B.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1023007
Patch, Vendor Advisory x_refsource_confirm
http://www.adobe.com/support/security/bulletins/apsb09-15.html
Patch, Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2009/2898
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6156

Scores

EPSS 0.5410
EPSS Percentile 98.0%

Details

CWE
CWE-119
Status published
Products (50)
adobe/acrobat 7.0
adobe/acrobat 7.0.1
adobe/acrobat 7.0.2
adobe/acrobat 7.0.3
adobe/acrobat 7.0.4
adobe/acrobat 7.0.5
adobe/acrobat 7.0.6
adobe/acrobat 7.0.7
adobe/acrobat 7.0.8
adobe/acrobat 7.0.9
... and 40 more
Published Oct 19, 2009
Tracked Since Feb 18, 2026