This application requires Javascript for optimal performance.

Adobe.Acrobat.ActiveX.Control.DoS

Release Date

Oct 14, 2009

Severity

medium

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates a possible attempt to exploit a memory-corruption vulnerability in Adobe Reader and Adobe Acrobat.

The vulnerability is caused by an error that occurs when the vulnerable software handles a malicious JavaScript. It allows a remote attacker to execute arbitrary code via sending a crafted PDF file.

Affected Products

Adobe Reader and Adobe Acrobat 7.1.1
Adobe Reader and Adobe Acrobat 8.1.2
Adobe Reader and Adobe Acrobat 9.1.0

Recommended Actions

Upgrade to the latest versions.

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2009-2987

Reference: VID-17787