Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.66010
Category:Red Hat Local Security Checks
Title:RedHat Security Advisory RHSA-2009:1499
Summary:The remote host is missing updates announced in;advisory RHSA-2009:1499.;;Adobe Reader allows users to view and print documents in Portable Document;Format (PDF).;;Multiple flaws were discovered in Adobe Reader. A specially-crafted PDF;file could cause Adobe Reader to crash or, potentially, execute arbitrary;code as the user running Adobe Reader when opened. (CVE-2009-2980,;CVE-2009-2983, CVE-2009-2985, CVE-2009-2986, CVE-2009-2990, CVE-2009-2991,;CVE-2009-2993, CVE-2009-2994, CVE-2009-2996, CVE-2009-2997, CVE-2009-2998,;CVE-2009-3458, CVE-2009-3459, CVE-2009-3462);;Multiple flaws were discovered in Adobe Reader. A specially-crafted PDF;file could cause Adobe Reader to crash when opened. (CVE-2009-2979,;CVE-2009-2988, CVE-2009-3431);;An input validation flaw was found in Adobe Reader. Opening a;specially-crafted PDF file could lead to a Trust Manager restrictions;bypass. (CVE-2009-2981);;All Adobe Reader users should install these updated packages. They contain;Adobe Reader version 8.1.7, which is not vulnerable to these issues. All;running instances of Adobe Reader must be restarted for the update to take;effect.
Description:Summary:
The remote host is missing updates announced in
advisory RHSA-2009:1499.

Adobe Reader allows users to view and print documents in Portable Document
Format (PDF).

Multiple flaws were discovered in Adobe Reader. A specially-crafted PDF
file could cause Adobe Reader to crash or, potentially, execute arbitrary
code as the user running Adobe Reader when opened. (CVE-2009-2980,
CVE-2009-2983, CVE-2009-2985, CVE-2009-2986, CVE-2009-2990, CVE-2009-2991,
CVE-2009-2993, CVE-2009-2994, CVE-2009-2996, CVE-2009-2997, CVE-2009-2998,
CVE-2009-3458, CVE-2009-3459, CVE-2009-3462)

Multiple flaws were discovered in Adobe Reader. A specially-crafted PDF
file could cause Adobe Reader to crash when opened. (CVE-2009-2979,
CVE-2009-2988, CVE-2009-3431)

An input validation flaw was found in Adobe Reader. Opening a
specially-crafted PDF file could lead to a Trust Manager restrictions
bypass. (CVE-2009-2981)

All Adobe Reader users should install these updated packages. They contain
Adobe Reader version 8.1.7, which is not vulnerable to these issues. All
running instances of Adobe Reader must be restarted for the update to take
effect.

Solution:
Please note that this update is available via
Red Hat Network. To use Red Hat Network, launch the Red
Hat Update Agent with the following command: up2date

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2009-2979
BugTraq ID: 36638
http://www.securityfocus.com/bid/36638
Cert/CC Advisory: TA09-286B
http://www.us-cert.gov/cas/techalerts/TA09-286B.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6280
http://securitytracker.com/id?1023007
http://www.vupen.com/english/advisories/2009/2898
Common Vulnerability Exposure (CVE) ID: CVE-2009-2980
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5964
Common Vulnerability Exposure (CVE) ID: CVE-2009-2981
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6284
Common Vulnerability Exposure (CVE) ID: CVE-2009-2983
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5636
Common Vulnerability Exposure (CVE) ID: CVE-2009-2985
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6145
Common Vulnerability Exposure (CVE) ID: CVE-2009-2986
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5888
Common Vulnerability Exposure (CVE) ID: CVE-2009-2988
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6483
Common Vulnerability Exposure (CVE) ID: CVE-2009-2990
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6371
Common Vulnerability Exposure (CVE) ID: CVE-2009-2991
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5557
Common Vulnerability Exposure (CVE) ID: CVE-2009-2993
BugTraq ID: 36664
http://www.securityfocus.com/bid/36664
CERT/CC vulnerability note: VU#257117
http://www.kb.cert.org/vuls/id/257117
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5822
Common Vulnerability Exposure (CVE) ID: CVE-2009-2994
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6156
Common Vulnerability Exposure (CVE) ID: CVE-2009-2996
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5560
Common Vulnerability Exposure (CVE) ID: CVE-2009-2997
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6481
Common Vulnerability Exposure (CVE) ID: CVE-2009-2998
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6418
Common Vulnerability Exposure (CVE) ID: CVE-2009-3431
BugTraq ID: 35148
http://www.securityfocus.com/bid/35148
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6532
Common Vulnerability Exposure (CVE) ID: CVE-2009-3458
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6499
Common Vulnerability Exposure (CVE) ID: CVE-2009-3459
BugTraq ID: 36600
http://www.securityfocus.com/bid/36600
ISS Security Advisory: 20091009 Adobe Acrobat and Acrobat Reader Remote Code Execution
http://www.iss.net/threats/348.html
http://isc.sans.org/diary.html?storyid=7300
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6534
http://secunia.com/advisories/36983
http://www.vupen.com/english/advisories/2009/2851
XForce ISS Database: adobe-reader-pdf-code-execution(53691)
https://exchange.xforce.ibmcloud.com/vulnerabilities/53691
Common Vulnerability Exposure (CVE) ID: CVE-2009-3462
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6429
CopyrightCopyright (C) 2009 E-Soft Inc.

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.