First published: Mon Oct 19 2009(Updated: )
Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 allow attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2009-2996.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Acrobat Reader | <=9.1.3 | |
Adobe Acrobat Reader | =7.0 | |
Adobe Acrobat Reader | =7.0.1 | |
Adobe Acrobat Reader | =7.0.2 | |
Adobe Acrobat Reader | =7.0.3 | |
Adobe Acrobat Reader | =7.0.4 | |
Adobe Acrobat Reader | =7.0.5 | |
Adobe Acrobat Reader | =7.0.6 | |
Adobe Acrobat Reader | =7.0.7 | |
Adobe Acrobat Reader | =7.0.8 | |
Adobe Acrobat Reader | =7.0.9 | |
Adobe Acrobat Reader | =7.1.0 | |
Adobe Acrobat Reader | =7.1.1 | |
Adobe Acrobat Reader | =7.1.3 | |
Adobe Acrobat Reader | =8.0 | |
Adobe Acrobat Reader | =8.1 | |
Adobe Acrobat Reader | =8.1.1 | |
Adobe Acrobat Reader | =8.1.2 | |
Adobe Acrobat Reader | =8.1.3 | |
Adobe Acrobat Reader | =8.1.4 | |
Adobe Acrobat Reader | =8.1.6 | |
Adobe Acrobat Reader | =9.0 | |
Adobe Acrobat Reader | =9.1.1 | |
Adobe Acrobat Reader | =9.1.2 | |
Adobe Acrobat Reader Notification Manager | <=9.1.3 | |
Adobe Acrobat Reader Notification Manager | =7.0 | |
Adobe Acrobat Reader Notification Manager | =7.0.1 | |
Adobe Acrobat Reader Notification Manager | =7.0.2 | |
Adobe Acrobat Reader Notification Manager | =7.0.3 | |
Adobe Acrobat Reader Notification Manager | =7.0.4 | |
Adobe Acrobat Reader Notification Manager | =7.0.5 | |
Adobe Acrobat Reader Notification Manager | =7.0.6 | |
Adobe Acrobat Reader Notification Manager | =7.0.7 | |
Adobe Acrobat Reader Notification Manager | =7.0.8 | |
Adobe Acrobat Reader Notification Manager | =7.0.9 | |
Adobe Acrobat Reader Notification Manager | =7.1.0 | |
Adobe Acrobat Reader Notification Manager | =7.1.1 | |
Adobe Acrobat Reader Notification Manager | =7.1.3 | |
Adobe Acrobat Reader Notification Manager | =8.0 | |
Adobe Acrobat Reader Notification Manager | =8.1 | |
Adobe Acrobat Reader Notification Manager | =8.1.1 | |
Adobe Acrobat Reader Notification Manager | =8.1.2 | |
Adobe Acrobat Reader Notification Manager | =8.1.3 | |
Adobe Acrobat Reader Notification Manager | =8.1.4 | |
Adobe Acrobat Reader Notification Manager | =8.1.5 | |
Adobe Acrobat Reader Notification Manager | =8.1.6 | |
Adobe Acrobat Reader Notification Manager | =9.0 | |
Adobe Acrobat Reader Notification Manager | =9.1 | |
Adobe Acrobat Reader Notification Manager | =9.1.1 | |
Adobe Acrobat Reader Notification Manager | =9.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-2985 has a critical severity rating due to potential memory corruption leading to denial of service or arbitrary code execution.
To fix CVE-2009-2985, update Adobe Reader and Acrobat to the latest versions or apply patches provided by Adobe.
CVE-2009-2985 affects Adobe Reader and Acrobat versions 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2.
The risks associated with CVE-2009-2985 include denial of service attacks and the possibility of an attacker executing arbitrary code on affected systems.
While the best solution is to update the software, disabling JavaScript in Adobe Reader and Acrobat may mitigate some risks from CVE-2009-2985.