CVE Vulnerabilities

CVE-2010-2862

Published: Aug 05, 2010 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
6.8 CRITICAL
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu

Integer overflow in CoolType.dll in Adobe Reader 8.2.3 and 9.3.3, and Acrobat 9.3.3, allows remote attackers to execute arbitrary code via a TrueType font with a large maxCompositePoints value in a Maximum Profile (maxp) table.

Affected Software

Name Vendor Start Version End Version
Acrobat_reader Adobe 8.2.3 (including) 8.2.3 (including)
Acrobat_reader Adobe 9.3.3 (including) 9.3.3 (including)
Extras for RHEL 4 RedHat acroread-0:9.3.4-1.el4 *
Supplementary for Red Hat Enterprise Linux 5 RedHat acroread-0:9.3.4-1.el5 *

References