imPC@ndo IT

Tracker / CVE-2009-4324

CVE-2009-4324

Exploited High 7.8

Use-after-free vulnerability in the Doc.media.newPlayer method in Multimedia.api in Adobe Reader and Acrobat 9.x before 9.3, and 8.x before 8.2 on Windows and Mac OS X, allows remote attackers to execute arbitrary code via a crafted PDF file using ZLib compressed streams, as exploited in the wild in December 2009.

Affected products and versions

adobe acrobat · 8.0 → 8.2
adobe acrobat · 9.0 → 9.3
adobe acrobat_reader · 8.0 → 8.2
adobe acrobat_reader · 9.0 → 9.3
opensuse opensuse
suse linux_enterprise
suse linux_enterprise_debuginfo

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References