VYPR
High severity7.8CISA KEVNVD Advisory· Published Dec 15, 2009· Updated Jun 16, 2026

CVE-2009-4324

CVE-2009-4324

Description

Use-after-free vulnerability in the Doc.media.newPlayer method in Multimedia.api in Adobe Reader and Acrobat 9.x before 9.3, and 8.x before 8.2 on Windows and Mac OS X, allows remote attackers to execute arbitrary code via a crafted PDF file using ZLib compressed streams, as exploited in the wild in December 2009.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

9
  • cpe:2.3:a:adobe:acrobat:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:adobe:acrobat:*:*:*:*:*:*:*:*range: >=8.0,<8.2
    • cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:*range: >=8.0,<8.2
    • (no CPE)range: < 9.3, < 8.2
  • cpe:2.3:a:suse:linux_enterprise_debuginfo:11:-:*:*:*:*:*:*
  • OpenSUSE/openSUSE2 versions
    cpe:2.3:o:opensuse:opensuse:11.1:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:opensuse:opensuse:11.1:*:*:*:*:*:*:*
    • cpe:2.3:o:opensuse:opensuse:11.2:*:*:*:*:*:*:*
  • cpe:2.3:o:suse:linux_enterprise:10.0:sp2:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:suse:linux_enterprise:10.0:sp2:*:*:*:*:*:*
    • cpe:2.3:o:suse:linux_enterprise:10.0:sp3:*:*:*:*:*:*
  • Range: < 9.3, < 8.2

Patches

Vulnerability mechanics

References

22

News mentions

0

No linked articles in our index yet.