The U3D implementation in Adobe Reader and Acrobat 9.x before 9.3, 8.x before 8.2 on Windows and Mac OS X, and 7.x before 7.1.4 allows remote attackers to execute arbitrary code via malformed U3D data in a PDF document, related to a CLODProgressiveMeshDeclaration "array boundary issue," a different vulnerability than CVE-2009-2994.
History

Tue, 04 Feb 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics kev

{'dateAdded': '2022-06-08'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 13 Aug 2024 23:30:00 +0000

Type Values Removed Values Added
References

cve-icon MITRE

Status: PUBLISHED

Assigner: adobe

Published: 2010-01-13T19:00:00.000Z

Updated: 2025-02-04T21:44:17.793Z

Reserved: 2009-11-16T00:00:00.000Z

Link: CVE-2009-3953

cve-icon Vulnrichment

Updated: 2024-08-07T06:45:50.938Z

cve-icon NVD

Status : Analyzed

Published: 2010-01-13T19:30:00.343

Modified: 2025-02-13T17:42:44.203

Link: CVE-2009-3953

cve-icon Redhat

Severity : Critical

Publid Date: 2010-01-12T00:00:00Z

Links: CVE-2009-3953 - Bugzilla