CVE Vulnerabilities

CVE-2010-2168

Published: Jun 30, 2010 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
6.8 CRITICAL
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code via a PDF file with crafted Flash content, involving the newfunction (0x44) operator and an invalid pointer vulnerability that triggers memory corruption, a different vulnerability than CVE-2010-1285 and CVE-2010-2201.

Affected Software

NameVendorStart VersionEnd Version
AcrobatAdobe9.0 (including)9.0 (including)
AcrobatAdobe9.1 (including)9.1 (including)
AcrobatAdobe9.1.1 (including)9.1.1 (including)
AcrobatAdobe9.1.2 (including)9.1.2 (including)
AcrobatAdobe9.1.3 (including)9.1.3 (including)
AcrobatAdobe9.2 (including)9.2 (including)
AcrobatAdobe9.3 (including)9.3 (including)
AcrobatAdobe9.3.1 (including)9.3.1 (including)
AcrobatAdobe9.3.2 (including)9.3.2 (including)
Extras for RHEL 4RedHatacroread-0:9.3.3-2.el4*
Supplementary for Red Hat Enterprise Linux 5RedHatacroread-0:9.3.3-1.el5*
AcroreadUbuntudapper*
AcroreadUbuntuhardy*
AcroreadUbuntujaunty*
AcroreadUbuntukarmic*
AcroreadUbuntulucid*
AcroreadUbuntuupstream*

References