CVE-2009-1856: Buffer Overflow
Integer overflow in Adobe Reader 7 and Acrobat 7 before 7.1.3, Adobe Reader 8 and Acrobat 8 before 8.1.6, and Adobe Reader 9 and Acrobat 9 before 9.1.2 allows attackers to cause a denial of service or possibly execute arbitrary code via a PDF file containing unspecified parameters to the FlateDecode filter, which triggers a heap-based buffer overflow.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1856?
CVE-2009-1856 is classified as a moderate severity vulnerability due to its potential to cause denial of service or remote code execution.
How do I fix CVE-2009-1856?
To remediate CVE-2009-1856, upgrade Adobe Reader and Acrobat to versions 7.1.3, 8.1.6, or 9.1.2 or later.
Which versions of Adobe Reader are affected by CVE-2009-1856?
CVE-2009-1856 affects Adobe Reader versions 7 prior to 7.1.3, 8 prior to 8.1.6, and 9 prior to 9.1.2.
What type of vulnerability is CVE-2009-1856?
CVE-2009-1856 is an integer overflow vulnerability that can lead to denial of service and potentially allow arbitrary code execution.
Can CVE-2009-1856 be exploited remotely?
Yes, CVE-2009-1856 can be exploited remotely through specially crafted PDF files.