⚠ Exploited in the wild
Exploitation observed in the wild. Not yet on CISA KEV.

CVE-2009-3459Improper Restriction of Operations within the Bounds of a Memory Buffer in Adobe Acrobat

Severity
9.3CRITICALNVD
EPSS
88.4%
top 0.50%
CISA KEV
Not in KEV
Exploit
Exploited in wild
Active exploitation observed
Timeline
PublishedOct 13
Latest updateMay 2

Description

Heap-based buffer overflow in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 allows remote attackers to execute arbitrary code via a crafted PDF file that triggers memory corruption, as exploited in the wild in October 2009. NOTE: some of these details are obtained from third party information.

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 8.6 | Impact: 10.0

Affected Packages3 packages

NVDadobe/acrobat9.1.3+39
NVDadobe/reader37 versions+36

Patches

🔴Vulnerability Details

3
GHSA
GHSA-q52p-3m33-w676: Heap-based buffer overflow in Adobe Reader and Acrobat 72022-05-02
CVEList
CVE-2009-3459: Heap-based buffer overflow in Adobe Reader and Acrobat 72009-10-13
VulnCheck
Adobe Acrobat and Reader Improper Restriction of Operations within the Bounds of a Memory Buffer2009

💥Exploits & PoCs

3
Exploit-DB
Adobe - FlateDecode Stream Predictor 02 Integer Overflow (Metasploit) (2)2010-09-25
Exploit-DB
Adobe - FlateDecode Stream Predictor 02 Integer Overflow (Metasploit) (1)2010-09-20
Metasploit
Adobe FlateDecode Stream Predictor 02 Integer Overflow

🔍Detection Rules

1
Suricata
ET WEB_CLIENT Adobe Acrobat Reader FlateDecode Stream Predictor Exploit Attempt2011-07-01

📋Vendor Advisories

1
Red Hat
acroread: heap overflow fix in version 8.1.7 (APSB09-15)2009-10-08

💬Community

1
Bugzilla
CVE-2009-3459 acroread: heap overflow fix in version 8.1.7 (APSB09-15)2009-10-08
CVE-2009-3459 — Adobe Acrobat vulnerability | cvebase