First published: Fri Dec 04 2009(Updated: )
Buffer overflow in Adobe Illustrator CS4 14.0.0, CS3 13.0.3 and earlier, and CS3 13.0.0 allows remote attackers to execute arbitrary code via a long DSC comment in an Encapsulated PostScript (.eps) file. NOTE: some of these details are obtained from third party information.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Illustrator | =13.0.0-cs4 | |
Adobe Illustrator | =14.0.0-cs4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-4195 has a critical severity level due to its potential for remote code execution.
To fix CVE-2009-4195, upgrade to the latest version of Adobe Illustrator that addresses the vulnerability.
CVE-2009-4195 impacts Adobe Illustrator CS4 14.0.0, CS3 13.0.3 and earlier versions.
CVE-2009-4195 can be exploited through a crafted Encapsulated PostScript (.eps) file containing a long DSC comment.
Yes, CVE-2009-4195 poses a significant risk as it allows attackers to execute arbitrary code on vulnerable systems.