CVE-2009-1862

Scores

EPSS

0.586medium58.6%
0%20%40%60%80%100%

Percentile: 58.6%

CVSS

7.8high3.x
0246810

CVSS Score: 7.8/10

All CVSS Scores

CVSS 3.x
7.8

Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CVSS 2.0
6.8

Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Description

Unspecified vulnerability in Adobe Reader and Acrobat 9.x through 9.1.2, and Adobe Flash Player 9.x through 9.0.159.0 and 10.x through 10.0.22.87, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via (1) a crafted Flash application in a .pdf file or (2) a crafted .swf file, related to authplay.dll, as exploited in the wild in July 2009.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

nvdredhatubuntu

CWEs

CWE-787

Exploits

Exploit ID: CVE-2009-1862

Source: cisa

URL: https://www.cisa.gov/known-exploited-vulnerabilities-catalog

Recommendations

Source: nvd

All Adobe Flash Player users should upgrade to the latest version:

# emerge –sync
# emerge –ask –oneshot –verbose “>=www-plugins/adobe-flash-10.0.32.18”

All Adobe Reader users should upgrade to the latest version:

# emerge –sync
# emerge –ask –oneshot –verbose “>=app-text/acroread-9.1.3”

URL: http://security.gentoo.org/glsa/glsa-200908-04.xml

Vulnerable Software (8)

Type: Configuration

Product: adobe-flashplugin

Operating System: ubuntu hardy 8.04

Trait:
{  "fixed": "10.0.32.18-1hardy1"}

Source: ubuntu

Type: Configuration

Product: flash-plugin

Operating System: rhel

Trait:
{  "fixed": "9.0.246.0-2.el3.with.oss"}

Source: redhat

Type: Configuration

Product: flash-plugin

Operating System: rhel

Trait:
{  "fixed": "9.0.246.0-2.el4"}

Source: redhat

Type: Configuration

Product: flash-plugin

Operating System: rhel

Trait:
{  "fixed": "10.0.32.18-2.el5"}

Source: redhat

Type: Configuration

Product: flashplugin-nonfree

Operating System: ubuntu hardy 8.04

Trait:
{  "fixed": "9.0.246.0ubuntu1"}

Source: ubuntu

Type: Configuration

Vendor: *

Product: acrobat

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:adobe:acrobat:*:*:*:*:*:*:*:*",      "versionEndIncluding": "9.1.2",      "versionStartIncluding": "9.0",      "vulnerable": true    },    {...

Source: nvd

Type: Configuration

Vendor: *

Product: acrobat_reader

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:adobe:acrobat:*:*:*:*:*:*:*:*",      "versionEndIncluding": "9.1.2",      "versionStartIncluding": "9.0",      "vulnerable": true    },    {...

Source: nvd

Type: Configuration

Vendor: *

Product: flash_player

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*",      "versionEndIncluding": "9.0.159.0",      "versionStartIncluding": "9.0",      "vulnerable": true    ...

Source: nvd

End of list