9.3
CVSSv2

CVE-2009-0219

Published: 21/01/2009 Updated: 05/02/2009
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The PDF distiller in the Attachment Service in Research in Motion (RIM) BlackBerry Enterprise Server (BES) 4.1.3 up to and including 4.1.6, BlackBerry Professional Software 4.1.4, and BlackBerry Unite! prior to 1.0.3 bundle 28 performs delete operations on uninitialized pointers, which allows user-assisted remote malicious users to execute arbitrary code via a crafted data stream in a .pdf file.

Vulnerable Product Search on Vulmon Subscribe to Product

research in motion limited blackberry professional software 4.1.4

research in motion limited blackberry unite 1.0

research in motion limited blackberry unite 1.0.1

research in motion limited blackberry enterprise server 4.1.5

research in motion limited blackberry enterprise server 4.1.6

research in motion limited blackberry enterprise server 4.1.3

research in motion limited blackberry enterprise server 4.1.4

research in motion limited blackberry unite 1.0.2

research in motion limited blackberry unite