CVE-2009-1865: Critical severity Adobe AIR vulnerability
Adobe Flash Player before 9.0.246.0 and 10.x before 10.0.32.18, and Adobe AIR before 1.5.2, allows attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unspecified vectors, related to a "null pointer vulnerability."
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1865?
CVE-2009-1865 has a moderate severity rating as it allows for denial of service and possible arbitrary code execution.
How do I fix CVE-2009-1865?
To fix CVE-2009-1865, upgrade to Adobe Flash Player version 10.0.32.18 or later, or Adobe AIR version 1.5.2 or later.
Which versions of Adobe Flash Player are affected by CVE-2009-1865?
CVE-2009-1865 affects Adobe Flash Player versions prior to 9.0.246.0 and 10.x before 10.0.32.18.
How does CVE-2009-1865 impact users?
Users of affected versions of Adobe Flash Player may experience application crashes or be at risk of arbitrary code execution.
Is Adobe AIR affected by CVE-2009-1865?
Yes, Adobe AIR versions prior to 1.5.2 are affected by CVE-2009-1865.