Unspecified vulnerability in Adobe Reader and Acrobat 9.x through 9.1.2, and Adobe Flash Player 9.x through 9.0.159.0 and 10.x through 10.0.22.87, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via (1) a crafted Flash application in a .pdf file or (2) a crafted .swf file, related to authplay.dll, as exploited in the wild in July 2009.
2009-07-23T20:30:00.233
2025-10-22T01:15:34.447
Deferred
CVSSv3.1: 7.8 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | adobe | acrobat | ≤ 9.1.2 | Yes |
| Application | adobe | acrobat_reader | ≤ 9.1.2 | Yes |
| Application | adobe | flash_player | ≤ 9.0.159.0 | Yes |
| Application | adobe | flash_player | ≤ 10.0.22.87 | Yes |