CVE-2009-4764 Information

Description

Adobe Reader 8.x and 9.x on Windows is able to execute EXE files that are embedded in a PDF document which makes it easier for remote attackers to trick users into executing arbitrary code via a crafted document.

Reference

http://lists.immunitysec.com/pipermail/dailydave/2010-April/006072.html http://lists.immunitysec.com/pipermail/dailydave/2010-April/006074.html http://www.metasploit.com/redmine/projects/framework/repository/revisions/8379/changes/modules/exploits/windows/fileformat/adobe_pdf_embedded_exe.rb https://exchange.xforce.ibmcloud.com/vulnerabilities/57994 https://forum.immunityinc.com/board/thread/1199/exploiting-pdf-files-without-vulnerabili/?page=1post-1199 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A6976

Share on: