peter bassill · operator
$ cve CVE-2009-4324 JSON

CVE-2009-4324 KEV EXPLOIT

7.8
HIGH · CVSS 3.1 · EPSS 81.9% (pctl 100)

Patch first

On CISA KEV — known exploited in the wild, due 2022-06-22.

Description

Use-after-free vulnerability in the Doc.media.newPlayer method in Multimedia.api in Adobe Reader and Acrobat 9.x before 9.3, and 8.x before 8.2 on Windows and Mac OS X, allows remote attackers to execute arbitrary code via a crafted PDF file using ZLib compressed streams, as exploited in the wild in December 2009.

Scoring

CVSS7.8 (HIGH, v3.1)
VectorCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS81.88% — more likely to be exploited than 100% of all CVEs
WeaknessCWE-416
On CISA KEVyes — remediate by 2022-06-22
Public exploityes
Published2009-12-15
Last modified2026-06-16

CISA KEV

NameAdobe Acrobat and Reader Use-After-Free Vulnerability
Added2022-06-08
Due2022-06-22
Vendor / productAdobe / Acrobat and Reader
Ransomware usenone reported

Affected (7)

VendorProduct
adobeacrobat
adobeacrobat reader
applemac os x
microsoftwindows
opensuseopensuse
suselinux enterprise
suselinux enterprise debuginfo

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD