CVE Database
/

CVE-2009-1493

Back to search

CVE-2009-1493

Published: Apr 30, 2009

Modified: Aug 7, 2024

PUBLISHED

Description

The customDictionaryOpen spell method in the JavaScript API in Adobe Reader 9.1, 8.1.4, 7.1.1, and earlier on Linux and UNIX allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a PDF file that triggers a call to this method with a long string in the second argument.

VendorProductVersions

n/a

n/a

affected
n/a

References

34740
vdb-entry
x_refsource_BID
35734
third-party-advisory
x_refsource_SECUNIA
TA09-133B
third-party-advisory
x_refsource_CERT
8570
exploit
x_refsource_EXPLOIT-DB
ADV-2009-1189
vdb-entry
x_refsource_VUPEN
SUSE-SR:2009:011
vendor-advisory
x_refsource_SUSE
54129
vdb-entry
x_refsource_OSVDB
GLSA-200907-06
vendor-advisory
x_refsource_GENTOO
259028
vendor-advisory
x_refsource_SUNALERT
SUSE-SA:2009:027
vendor-advisory
x_refsource_SUSE
34924
third-party-advisory
x_refsource_SECUNIA
ADV-2009-1317
vdb-entry
x_refsource_VUPEN
1022139
vdb-entry
x_refsource_SECTRACK
35358
third-party-advisory
x_refsource_SECUNIA
35055
third-party-advisory
x_refsource_SECUNIA
VU#970180
third-party-advisory
x_refsource_CERT-VN
35416
third-party-advisory
x_refsource_SECUNIA
RHSA-2009:0478
vendor-advisory
x_refsource_REDHAT
35096
third-party-advisory
x_refsource_SECUNIA
35152
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now