CVE Vulnerabilities

CVE-2010-2168

Published: Jun 30, 2010 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
6.8 CRITICAL
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM

Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code via a PDF file with crafted Flash content, involving the newfunction (0x44) operator and an invalid pointer vulnerability that triggers memory corruption, a different vulnerability than CVE-2010-1285 and CVE-2010-2201.

Affected Software

Name Vendor Start Version End Version
Acrobat Adobe 9.0 (including) 9.0 (including)
Acrobat Adobe 9.1 (including) 9.1 (including)
Acrobat Adobe 9.1.1 (including) 9.1.1 (including)
Acrobat Adobe 9.1.2 (including) 9.1.2 (including)
Acrobat Adobe 9.1.3 (including) 9.1.3 (including)
Acrobat Adobe 9.2 (including) 9.2 (including)
Acrobat Adobe 9.3 (including) 9.3 (including)
Acrobat Adobe 9.3.1 (including) 9.3.1 (including)
Acrobat Adobe 9.3.2 (including) 9.3.2 (including)
Extras for RHEL 4 RedHat acroread-0:9.3.3-2.el4 *
Supplementary for Red Hat Enterprise Linux 5 RedHat acroread-0:9.3.3-1.el5 *
Acroread Ubuntu dapper *
Acroread Ubuntu hardy *
Acroread Ubuntu jaunty *
Acroread Ubuntu karmic *
Acroread Ubuntu lucid *
Acroread Ubuntu upstream *

References