CVE-2009-4195
high · 9.3Buffer overflow in Adobe Illustrator CS4 14.0.0, CS3 13.0.3 and earlier, and CS3 13.0.0 allows remote attackers to execute arbitrary code via a long DSC comment in an Encapsulated PostScript (.eps) file. NOTE: some of these details are obtained from third party information.
9.3
CVSS
70.7%
EPSS (exploit prob.)
99th
EPSS percentile
2009-12-04
Published
AV:N/AC:M/Au:N/C:C/I:C/A:C
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| adobe | illustrator | 13.0.0 |
| adobe | illustrator | 14.0.0 |
Check a specific version with /api/v1/cve/match.
References
- http://blogs.adobe.com/psirt/2009/12/potential_adobe_illustrator_cs.html
- http://osvdb.org/60632
- http://retrogod.altervista.org/9sg_adobe_illuso.html
- http://secunia.com/advisories/37563
- http://www.adobe.com/support/security/bulletins/apsb10-01.html
- http://www.securityfocus.com/archive/1/508175/100/0/threaded
- http://www.securityfocus.com/bid/37192
- http://www.securitytracker.com/id?1023276
- http://www.vupen.com/english/advisories/2009/3396
- https://exchange.xforce.ibmcloud.com/vulnerabilities/54521
- http://blogs.adobe.com/psirt/2009/12/potential_adobe_illustrator_cs.html
- http://osvdb.org/60632
- http://retrogod.altervista.org/9sg_adobe_illuso.html
- http://secunia.com/advisories/37563
- http://www.adobe.com/support/security/bulletins/apsb10-01.html
- http://www.securityfocus.com/archive/1/508175/100/0/threaded
- http://www.securityfocus.com/bid/37192
- http://www.securitytracker.com/id?1023276
- http://www.vupen.com/english/advisories/2009/3396
- https://exchange.xforce.ibmcloud.com/vulnerabilities/54521
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2009-4195