CVE-2009-1492

Publication date 30 April 2009

Last updated 24 July 2024


Ubuntu priority

Description

The getAnnots Doc method in the JavaScript API in Adobe Reader and Acrobat 9.1, 8.1.4, 7.1.1, and earlier allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a PDF file that contains an annotation, and has an OpenAction entry with JavaScript code that calls this method with crafted integer arguments.

Status

Package Ubuntu Release Status
acroread 9.10 karmic
Fixed 9.2-1karmic1
9.04 jaunty
Fixed 9.1.2-3jaunty1
8.10 intrepid
Fixed 9.1.2-3intrepid1
8.04 LTS hardy
Fixed 9.1.2-0hardy3
6.06 LTS dapper Ignored end of life


Access our resources on patching vulnerabilities