Release DateFeb 09, 2011 |
Severitycritical |
ImpactSystem Compromise: Remote attackers can gain control of vulnerable systems. |
DescriptionThis indicates an attempt to exploit a memory-corruption vulnerability in the Adobe PDF Reader JavaScript engine.By passing crafted JBIG2 Image Stream, an attacker can execute arbitrary code on a vulnerable computer. To exploit this the attacker must trick the victim into opening a maliciously crafted PDF document. |
Affected ProductsAdobe Acrobat Standard older than 7.1.1Adobe Acrobat Standard older than 8.1.4 Adobe Acrobat Standard older than 9.1 |
Recommended ActionsApply the most recent upgrades or patches from the vendor:http://www.adobe.com/support/downloads/product.jsp?product=10&platform=Windows |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2009-0658 |
Reference/shttp://www.adobe.com/support/security/advisories/apsa09-01.html |