VulnerabilityModified
CVE-2009-3957
Adobe Reader and Acrobat 9.x before 9.3, and 8.x before 8.2 on Windows and Mac OS X, might allow attackers to cause a denial of service (NULL pointer dereference) via unspecified vectors.
MEDIUM 5.0EPSS 4.75%
Does this matter?
Lower severity and a low EPSS score (4.75%). Track it; it rarely justifies an emergency change on its own.
Description
Adobe Reader and Acrobat 9.x before 9.3, and 8.x before 8.2 on Windows and Mac OS X, might allow attackers to cause a denial of service (NULL pointer dereference) via unspecified vectors.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 4.75% probability · 91th percentile
- CISA KEV
- Not listed
- Affected
- adobe/acrobat · adobe/acrobat reader
- Source
- psirt@adobe.com
References
- http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.html
- http://www.adobe.com/support/security/bulletins/apsb10-02.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/37760
- http://www.securitytracker.com/id?1023446
- http://www.us-cert.gov/cas/techalerts/TA10-013A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2010/0103Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/55555
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7975
- http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.html
- http://www.adobe.com/support/security/bulletins/apsb10-02.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/37760
- http://www.securitytracker.com/id?1023446
- http://www.us-cert.gov/cas/techalerts/TA10-013A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2010/0103Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/55555
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7975
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.