CVE-2009-0927: Adobe Reader and Adobe Acrobat Stack-Based Buffer Overflow Vulnerability
Stack-based buffer overflow in Adobe Reader and Adobe Acrobat 9 before 9.1, 8 before 8.1.3 , and 7 before 7.1.1 allows remote attackers to execute arbitrary code via a crafted argument to the getIcon method of a Collab object, a different vulnerability than CVE-2009-0658.
Other sources
Stack-based buffer overflow in Adobe Reader and Adobe Acrobat allows remote attackers to execute arbitrary code.
— CISA
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2009-0927?
CVE-2009-0927 is classified as critical due to its ability to allow remote code execution.
How do I fix CVE-2009-0927?
To fix CVE-2009-0927, update Adobe Reader or Adobe Acrobat to the latest version provided by Adobe.
What versions of Adobe Reader are affected by CVE-2009-0927?
Adobe Reader versions prior to 7.1.1, 8.1.3, and 9.1 are affected by CVE-2009-0927.
Can CVE-2009-0927 be exploited remotely?
Yes, CVE-2009-0927 can be exploited remotely through specially crafted arguments to the getIcon method of a Collab object.
What type of vulnerability is CVE-2009-0927?
CVE-2009-0927 is a stack-based buffer overflow vulnerability.