Description
Stack-based buffer overflow in Adobe Reader and Adobe Acrobat 9 before 9.1, 8 before 8.1.3 , and 7 before 7.1.1 allows remote attackers to execute arbitrary code via a crafted argument to the getIcon method of a Collab object, a different vulnerability than CVE-2009-0658.
Published: 2009-03-19
Score: 8.8 High
EPSS: 93.8% High
KEV: Yes
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 22 Oct 2025 01:15:00 +0000


Tue, 21 Oct 2025 20:30:00 +0000


Tue, 21 Oct 2025 19:30:00 +0000


Mon, 10 Feb 2025 20:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-121
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}

kev

{'dateAdded': '2022-03-25'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 13 Aug 2024 23:15:00 +0000

Type Values Removed Values Added
References

Subscriptions

Adobe Acrobat Reader
Redhat Rhel Extras
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-10-22T00:05:55.318Z

Reserved: 2009-03-17T00:00:00.000Z

Link: CVE-2009-0927

cve-icon Vulnrichment

Updated: 2024-08-07T04:57:16.395Z

cve-icon NVD

Status : Analyzed

Published: 2009-03-19T10:30:00.420

Modified: 2026-04-22T14:12:44.147

Link: CVE-2009-0927

cve-icon Redhat

Severity : Critical

Publid Date: 2009-03-18T00:00:00Z

Links: CVE-2009-0927 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses