The PDF distiller in the Attachment Service in Research in Motion (RIM) BlackBerry Enterprise Server (BES) 4.1.3 through 4.1.6, BlackBerry Professional Software 4.1.4, and BlackBerry Unite! before 1.0.3 bundle 28 performs delete operations on uninitialized pointers, which allows user-assisted remote attackers to execute arbitrary code via a crafted data stream in a .pdf file.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2009-01-21T01:00:00

Updated: 2024-08-07T04:24:18.429Z

Reserved: 2009-01-20T00:00:00

Link: CVE-2009-0219

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2009-01-21T01:30:00.343

Modified: 2009-02-05T06:53:18.063

Link: CVE-2009-0219

cve-icon Redhat

No data.