Adobe has published a security bulletin APSB09-15 for security issues leading to denial of service, addressed in Adobe Reader and Acrobat products: http://www.adobe.com/support/security/bulletins/apsb09-15.html Quoting Adobe bulletin APSB09-15 for issues descriptions: This update resolves a XMP-XML entity expansion issue that could lead to a Denial of Service (DoS) attack (CVE-2009-2979). This update resolves an input validation issue that could lead to a Denial of Service (DoS) issue (CVE-2009-2988). This update resolves an integer overflow in Acrobat that leads to a Denial of Service (DoS) (CVE-2009-2995). This update resolves a stack overflow issue that could potentially lead to a Denial of Service (DoS) attack (CVE-2009-3431).
According to the bulletin: This update resolves an integer overflow in that leads to a Denial of Service (DoS). This issue is specific to Acrobat and does not affect Adobe Reader. (CVE-2009-2995). So CVE-2009-2995 is not applicable here.
This issue has been addressed in following products: Extras for RHEL 3 Extras for RHEL 4 Extras for Red Hat Enterprise Linux 5 Via RHSA-2009:1499 https://rhn.redhat.com/errata/RHSA-2009-1499.html