U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2009-1862

Change History

Modified Analysis by NIST 6/28/2024 10:20:12 AM

Action Type Old Value New Value
Added CVSS V3.1

								
							
							
						
NIST AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Added CWE

								
							
							
						
NIST CWE-787
Removed CWE
NIST CWE-94

								
						
Changed CPE Configuration
OR
     *cpe:2.3:a:adobe:acrobat:9.0:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:acrobat:9.1:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:acrobat:9.1.1:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:acrobat:9.1.2:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:acrobat_reader:9.0:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:acrobat_reader:9.1:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:acrobat_reader:9.1.1:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:acrobat_reader:9.1.2:*:*:*:*:*:*:*
OR
     *cpe:2.3:a:adobe:acrobat:*:*:*:*:*:*:*:* versions from (including) 9.0 up to (including) 9.1.2
     *cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:* versions from (including) 9.0 up to (including) 9.1.2
Changed CPE Configuration
OR
     *cpe:2.3:a:adobe:flash_player:9.0.16:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:9.0.18d60:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:9.0.20:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:9.0.20.0:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:9.0.28:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:9.0.28.0:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:9.0.31:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:9.0.31.0:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:9.0.45.0:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:9.0.47.0:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:9.0.48.0:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:9.0.112.0:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:9.0.114.0:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:9.0.115.0:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:9.0.124.0:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:9.0.155.0:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:9.0.159.0:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:9.125.0:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:10.0.0.584:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:10.0.12.10:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:10.0.12.36:*:*:*:*:*:*:*
     *cpe:2.3:a:adobe:flash_player:10.0.22.87:*:*:*:*:*:*:*
OR
     *cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:* versions from (including) 9.0 up to (including) 9.0.159.0
     *cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:* versions from (including) 10.0 up to (including) 10.0.22.87
Changed Reference Type
http://blogs.adobe.com/psirt/2009/07/potential_adobe_reader_and_fla.html Vendor Advisory
http://blogs.adobe.com/psirt/2009/07/potential_adobe_reader_and_fla.html Broken Link, Vendor Advisory
Changed Reference Type
http://bugs.adobe.com/jira/browse/FP-1265 No Types Assigned
http://bugs.adobe.com/jira/browse/FP-1265 Broken Link
Changed Reference Type
http://isc.sans.org/diary.html?storyid=6847 No Types Assigned
http://isc.sans.org/diary.html?storyid=6847 Not Applicable
Changed Reference Type
http://lists.apple.com/archives/security-announce/2009/Sep/msg00003.html No Types Assigned
http://lists.apple.com/archives/security-announce/2009/Sep/msg00003.html Mailing List, Third Party Advisory
Changed Reference Type
http://lists.apple.com/archives/security-announce/2009/Sep/msg00004.html No Types Assigned
http://lists.apple.com/archives/security-announce/2009/Sep/msg00004.html Mailing List, Third Party Advisory
Changed Reference Type
http://news.cnet.com/8301-27080_3-10293389-245.html No Types Assigned
http://news.cnet.com/8301-27080_3-10293389-245.html Broken Link
Changed Reference Type
http://secunia.com/advisories/36193 No Types Assigned
http://secunia.com/advisories/36193 Broken Link
Changed Reference Type
http://secunia.com/advisories/36374 No Types Assigned
http://secunia.com/advisories/36374 Broken Link
Changed Reference Type
http://secunia.com/advisories/36701 No Types Assigned
http://secunia.com/advisories/36701 Broken Link
Changed Reference Type
http://security.gentoo.org/glsa/glsa-200908-04.xml No Types Assigned
http://security.gentoo.org/glsa/glsa-200908-04.xml Third Party Advisory
Changed Reference Type
http://sunsolve.sun.com/search/document.do?assetkey=1-66-266108-1 No Types Assigned
http://sunsolve.sun.com/search/document.do?assetkey=1-66-266108-1 Broken Link
Changed Reference Type
http://support.apple.com/kb/HT3864 No Types Assigned
http://support.apple.com/kb/HT3864 Third Party Advisory
Changed Reference Type
http://support.apple.com/kb/HT3865 No Types Assigned
http://support.apple.com/kb/HT3865 Third Party Advisory
Changed Reference Type
http://www.adobe.com/support/security/advisories/apsa09-03.html No Types Assigned
http://www.adobe.com/support/security/advisories/apsa09-03.html Vendor Advisory
Changed Reference Type
http://www.adobe.com/support/security/bulletins/apsb09-10.html No Types Assigned
http://www.adobe.com/support/security/bulletins/apsb09-10.html Not Applicable
Changed Reference Type
http://www.adobe.com/support/security/bulletins/apsb09-13.html No Types Assigned
http://www.adobe.com/support/security/bulletins/apsb09-13.html Not Applicable
Changed Reference Type
http://www.kb.cert.org/vuls/id/259425 US Government Resource
http://www.kb.cert.org/vuls/id/259425 Third Party Advisory, US Government Resource
Changed Reference Type
http://www.securityfocus.com/bid/35759 No Types Assigned
http://www.securityfocus.com/bid/35759 Broken Link, Third Party Advisory, VDB Entry
Changed Reference Type
http://www.symantec.com/business/security_response/writeup.jsp?docid=2009-072209-2512-99 No Types Assigned
http://www.symantec.com/business/security_response/writeup.jsp?docid=2009-072209-2512-99 Broken Link
Changed Reference Type
http://www.symantec.com/connect/blogs/next-generation-flash-vulnerability No Types Assigned
http://www.symantec.com/connect/blogs/next-generation-flash-vulnerability Broken Link