[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2009-2979Date: (C)2009-10-19   (M)2023-12-22


Adobe Reader and Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 do not properly perform XMP-XML entity expansion, which allows remote attackers to cause a denial of service via a crafted document.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 4.3
Exploit Score: 8.6
Impact Score: 2.9
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: MEDIUM
Authentication: NONE
Confidentiality: NONE
Integrity: NONE
Availability: PARTIAL
  
Reference:
SECTRACK-1023007
BID-36638
ADV-2009-2898
TA09-286B
http://www.adobe.com/support/security/bulletins/apsb09-15.html
oval:org.mitre.oval:def:6280

CPE    48
cpe:/a:adobe:acrobat:7.0.1
cpe:/a:adobe:acrobat_reader:8.1
cpe:/a:adobe:acrobat_reader:8.0
cpe:/a:adobe:acrobat_reader:7.0.5
...
OVAL    4
oval:org.secpod.oval:def:18679
oval:org.secpod.oval:def:18655
oval:org.secpod.oval:def:400086
oval:org.mitre.oval:def:6280
...

© SecPod Technologies