← Back

CVE-2009-3953

nvd nist
Published: Jan 13, 2010Modified: Apr 21, 2026CISA KEV

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

The U3D implementation in Adobe Reader and Acrobat 9.x before 9.3, 8.x before 8.2 on Windows and Mac OS X, and 7.x before 7.1.4 allows remote attackers to execute arbitrary code via malformed U3D data in a PDF document, related to a CLODProgressiveMeshDeclaration "array boundary issue," a different vulnerability than CVE-2009-2994.

Affected (8)

1 product
Acrobat
1 product
Opensuse
2 products
Linux Enterprise
Linux Enterprise Debuginfo
Configuration A
3 vulnerable · 2 platform
Vulnerable SoftwareAffected Versions
Adobe
From 7.0 to 7.1.4
From 8.0 to 8.2
From 9.0 to 9.3
Running on/withPlatform Versions
Apple
Mac Os X
All versions
Microsoft
Windows
All versions
Configuration B
5 vulnerable
Vulnerable SoftwareAffected Versions
Opensuse
Version 11.1
Version 11.2
Suse
Version 10.0 sp2
Version 10.0 sp3
Version 11

References (29)

Source: psirt@adobe.com
Mailing ListThird Party Advisory
Source: psirt@adobe.com
Broken Link
Source: psirt@adobe.com
Broken Link
Source: psirt@adobe.com
Broken Link
Source: psirt@adobe.com
Not ApplicablePatchVendor Advisory
Source: psirt@adobe.com
Broken LinkThird Party AdvisoryVDB Entry
Source: psirt@adobe.com
Broken LinkThird Party AdvisoryVDB Entry
Source: psirt@adobe.com
Third Party AdvisoryUS Government Resource
Source: psirt@adobe.com
Broken LinkVendor Advisory
Source: psirt@adobe.com
Issue Tracking
Source: psirt@adobe.com
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Not ApplicablePatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue Tracking
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0
US Government Resource

Timeline

No history available yet.