CVE-2009-0193: Buffer Overflow
Published Mar 25, 2009
·Updated
Heap-based buffer overflow in Adobe Acrobat Reader 9 before 9.1, 8 before 8.1.4, and 7 before 7.1.1 allows remote attackers to execute arbitrary code via a PDF file with a malformed JBIG2 symbol dictionary segment, a different vulnerability than CVE-2009-1061 and CVE-2009-1062.
Affected Software
3 affected components
Adobe Acrobat reader>=7.0<7.1.1
Adobe Acrobat reader>=8.0<8.1.4
Adobe Acrobat reader>=9.0<9.1
Remediation
Patch Available
Event History
Mar 25, 2009
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Data Sourced
via NVD·01:30 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2009-0193?
CVE-2009-0193 is classified as a critical vulnerability due to the potential for remote code execution.
2
How do I fix CVE-2009-0193?
To mitigate CVE-2009-0193, update Adobe Acrobat Reader to at least version 9.1, 8.1.4, or 7.1.1.
3
What versions of Adobe Acrobat Reader are affected by CVE-2009-0193?
Adobe Acrobat Reader versions prior to 9.1, 8.1.4, and 7.1.1 are vulnerable to CVE-2009-0193.
4
Can CVE-2009-0193 be exploited remotely?
Yes, CVE-2009-0193 allows remote attackers to execute arbitrary code via specially crafted PDF files.
5
What type of vulnerability is CVE-2009-0193?
CVE-2009-0193 is a heap-based buffer overflow vulnerability.