PT-2009-3299 · Adobe · Reader+1
Ryan Giobbi
+1
·
Published
2009-02-20
·
Updated
2025-10-22
·
CVE-2009-0658
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Adobe Reader versions 9.0 and earlier
Adobe Acrobat versions 9.0 and earlier
Description
A buffer overflow issue allows remote attackers to execute arbitrary code via a crafted PDF document. This is related to a non-JavaScript function call and possibly an embedded JBIG2 image stream. The issue has been exploited in the wild, as seen in February 2009 by Trojan.Pidief.E.
Recommendations
For Adobe Reader versions 9.0 and earlier, update to a version that contains a fix for this issue.
For Adobe Acrobat versions 9.0 and earlier, update to a version that contains a fix for this issue.
Exploit
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Acrobat
Reader