CVE-2009-1862

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
23/07/2009
Last modified:
22/10/2025

Description

Unspecified vulnerability in Adobe Reader and Acrobat 9.x through 9.1.2, and Adobe Flash Player 9.x through 9.0.159.0 and 10.x through 10.0.22.87, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via (1) a crafted Flash application in a .pdf file or (2) a crafted .swf file, related to authplay.dll, as exploited in the wild in July 2009.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:adobe:acrobat:*:*:*:*:*:*:*:* 9.0 (including) 9.1.2 (including)
cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:* 9.0 (including) 9.1.2 (including)
cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:* 9.0 (including) 9.0.159.0 (including)
cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:* 10.0 (including) 10.0.22.87 (including)


References to Advisories, Solutions, and Tools