CVE-2009-3953

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Jan 13, 2010
Updated: Dec 19, 2024
CWE ID 787

Summary

CVE-2009-3953 is a vulnerability affecting the U3D implementation in Adobe Reader and Acrobat 9.x before 9.3, 8.x before 8.2, and 7.x before 7.1.4 on Windows and Mac OS X. Maliciously crafted U3D data within a PDF document can lead to arbitrary code execution. This vulnerability, distinct from CVE-2009-2994, is related to an array boundary issue within the CLODProgressiveMeshDeclaration component.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Adobe Reader XI
  • Adobe Acrobat
  • Open SUSE
  • SUSE Linux Enterprise Server

Affected Vendors

  • Adobe
  • Opensuse
  • SUSE Linux GmbH