CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2009-0176

CRITICAL
9.3
CVSS Severity Score
EPSS Score0.1370%
EPSS Percentile28.15th
Published2009年1月20日
Last Modified2026年4月23日

Vulnerability Description

Multiple heap-based buffer overflows in the PDF distiller in the Attachment Service in Research in Motion (RIM) BlackBerry Enterprise Server (BES) 4.1.3 through 4.1.6, BlackBerry Professional Software 4.1.4, and BlackBerry Unite! before 1.0.3 bundle 28 allow user-assisted remote attackers to execute arbitrary code via (1) a crafted stream in a .pdf file, related to "symWidths"; or (2) a crafted data stream in a .pdf file, related to "bitmaps."

Affected Platforms (CPE)

📦
Research In Motion Limited

Blackberry Enterprise Server

= 4.1.3
📦
Research In Motion Limited

Blackberry Enterprise Server

= 4.1.4
📦
Research In Motion Limited

Blackberry Enterprise Server

= 4.1.5
📦
Research In Motion Limited

Blackberry Enterprise Server

= 4.1.6
📦
Research In Motion Limited

Blackberry Professional Software

= 4.1.4
📦
Research In Motion Limited

Blackberry Unite

<= 1.0.3
📦
Research In Motion Limited

Blackberry Unite

= 1.0
📦
Research In Motion Limited

Blackberry Unite

= 1.0.1
📦
Research In Motion Limited

Blackberry Unite

= 1.0.2

References & Advisories

相關漏洞威脅