CVE-2009-1862: Adobe Acrobat and Reader, Flash Player Unspecified Vulnerability

Published Jul 23, 2009
·
Updated

Adobe Acrobat and Reader and Adobe Flash Player allows remote attackers to execute code or cause denial-of-service (DoS).

Other sources

Unspecified vulnerability in Adobe Reader and Acrobat 9.x through 9.1.2, and Adobe Flash Player 9.x through 9.0.159.0 and 10.x through 10.0.22.87, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via (1) a crafted Flash application in a .pdf file or (2) a crafted .swf file, related to authplay.dll, as exploited in the wild in July 2009.

Affected Software

35 affected components
Adobe Acrobat and Reader, Flash Player
Adobe Acrobat=9.1
Adobe Acrobat Reader=9.1
Adobe Acrobat=9.0
Adobe Acrobat Reader=9.1.2
Adobe Acrobat Reader=9.1.1
Adobe Acrobat=9.1.1
Adobe Acrobat Reader=9.0
Adobe Acrobat=9.1.2
Adobe Flash Player=9.0.48.0
Adobe Flash Player=9.125.0
Adobe Flash Player=9.0.18d60
Adobe Flash Player=9.0.124.0
Adobe Flash Player=9.0.47.0
Adobe Flash Player=10.0.12.36
Adobe Flash Player=9.0.114.0
Adobe Flash Player=9.0.20.0
Adobe Flash Player=9.0.31.0
Adobe Flash Player=9.0.159.0
Adobe Flash Player=9.0.112.0
Adobe Flash Player=9.0.16
Adobe Flash Player=10.0.0.584
Adobe Flash Player=9.0.28.0
Adobe Flash Player=9.0.155.0
Adobe Flash Player=10.0.22.87
Adobe Flash Player=9.0.28
Adobe Flash Player=9.0.45.0
Adobe Flash Player=9.0.31
Adobe Flash Player=9.0.115.0
Adobe Flash Player=10.0.12.10
Adobe Flash Player=9.0.20
Adobe Acrobat>=9.0<=9.1.2
Adobe Acrobat Reader>=9.0<=9.1.2
Adobe Flash Player>=9.0<=9.0.159.0
Adobe Flash Player>=10.0<=10.0.22.87

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Compensating control

    Disconnect Adobe Flash Player (versions 9.x through 9.0.159.0 and 10.x through 10.0.22.87) if still in use — isolate hosts running these versions or block Adobe Flash Player traffic at the network boundary/firewall, since the product is end-of-life.

Event History

Jul 23, 2009
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Data Sourced
via NVD·08:30 PM
DescriptionSeverityWeaknessAffected Software
Jun 8, 2022
Known Exploited
via CISA·12:00 AM
Mar 1, 58274
Event
via NVD·12:38 AM
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2009-1862?

CVE-2009-1862 has been classified as a critical vulnerability due to its potential to allow remote code execution and denial-of-service attacks.

2

How do I fix CVE-2009-1862?

To fix CVE-2009-1862, users should update Adobe Acrobat, Reader, and Flash Player to the latest versions that have addressed this vulnerability.

3

Which versions of Adobe products are affected by CVE-2009-1862?

CVE-2009-1862 affects Adobe Acrobat and Reader versions 9.x through 9.1.2 and Adobe Flash Player versions 9.x through 9.0.159.0 and 10.x through 10.0.22.87.

4

What types of attacks can exploit CVE-2009-1862?

CVE-2009-1862 can be exploited by remote attackers to execute arbitrary code or cause a denial of service on affected systems.

5

Is CVE-2009-1862 still a risk today?

While CVE-2009-1862 was disclosed in 2009, systems running outdated versions of affected Adobe software remain at risk if they have not been updated.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203