CVE-2009-2990
high · 9.3Array index error in Adobe Reader and Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 might allow attackers to execute arbitrary code via unspecified vectors.
9.3
CVSS
68.7%
EPSS (exploit prob.)
99th
EPSS percentile
2009-10-19
Published
AV:N/AC:M/Au:N/C:C/I:C/A:C
Weaknesses
CWE-189
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| adobe | acrobat | <= 9.1.3 |
| adobe | acrobat | 7.0 |
| adobe | acrobat | 7.0.1 |
| adobe | acrobat | 7.0.2 |
| adobe | acrobat | 7.0.3 |
| adobe | acrobat | 7.0.4 |
| adobe | acrobat | 7.0.5 |
| adobe | acrobat | 7.0.6 |
| adobe | acrobat | 7.0.7 |
| adobe | acrobat | 7.0.8 |
| adobe | acrobat | 7.0.9 |
| adobe | acrobat | 7.1.0 |
| adobe | acrobat | 7.1.1 |
| adobe | acrobat | 7.1.3 |
| adobe | acrobat | 8.0 |
| adobe | acrobat | 8.1 |
| adobe | acrobat | 8.1.1 |
| adobe | acrobat | 8.1.2 |
| adobe | acrobat | 8.1.3 |
| adobe | acrobat | 8.1.4 |
| adobe | acrobat | 8.1.6 |
| adobe | acrobat | 9.0 |
| adobe | acrobat | 9.1.1 |
| adobe | acrobat | 9.1.2 |
| adobe | acrobat_reader | <= 9.1.3 |
| adobe | acrobat_reader | 7.0 |
| adobe | acrobat_reader | 7.0.1 |
| adobe | acrobat_reader | 7.0.2 |
| adobe | acrobat_reader | 7.0.3 |
| adobe | acrobat_reader | 7.0.4 |
| adobe | acrobat_reader | 7.0.5 |
| adobe | acrobat_reader | 7.0.6 |
| adobe | acrobat_reader | 7.0.7 |
| adobe | acrobat_reader | 7.0.8 |
| adobe | acrobat_reader | 7.0.9 |
| adobe | acrobat_reader | 7.1.0 |
| adobe | acrobat_reader | 7.1.1 |
| adobe | acrobat_reader | 7.1.3 |
| adobe | acrobat_reader | 8.0 |
| adobe | acrobat_reader | 8.1 |
Check a specific version with /api/v1/cve/match.
References
- http://securitytracker.com/id?1023007
- http://www.adobe.com/support/security/bulletins/apsb09-15.html
- http://www.securityfocus.com/bid/36638
- http://www.us-cert.gov/cas/techalerts/TA09-286B.html
- http://www.vupen.com/english/advisories/2009/2898
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6371
- http://securitytracker.com/id?1023007
- http://www.adobe.com/support/security/bulletins/apsb09-15.html
- http://www.securityfocus.com/bid/36638
- http://www.us-cert.gov/cas/techalerts/TA09-286B.html
- http://www.vupen.com/english/advisories/2009/2898
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6371
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2009-2990