CVE-2009-1855: Buffer Overflow
Stack-based buffer overflow in Adobe Reader 7 and Acrobat 7 before 7.1.3, Adobe Reader 8 and Acrobat 8 before 8.1.6, and Adobe Reader 9 and Acrobat 9 before 9.1.2 might allow attackers to execute arbitrary code via a PDF file containing a malformed U3D model file with a crafted extension block.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1855?
CVE-2009-1855 has a critical severity rating due to the potential for attackers to execute arbitrary code on affected systems.
How do I fix CVE-2009-1855?
To fix CVE-2009-1855, users should upgrade to Adobe Reader or Acrobat versions 7.1.3, 8.1.6, or 9.1.2 or later.
What products are affected by CVE-2009-1855?
CVE-2009-1855 affects Adobe Reader 7, 8, and 9 prior to the specified versions.
How can I determine if my system is vulnerable to CVE-2009-1855?
Check your Adobe Reader or Acrobat version against the fixed versions listed for CVE-2009-1855.
What kind of attack is possible with CVE-2009-1855?
CVE-2009-1855 allows attackers to execute arbitrary code via a specially crafted PDF file containing a malformed U3D model.