Aller au contenu
Appaloosa Scout
HIGH 7.3 KEV

CVE-2010-2883

Stack-based buffer overflow in CoolType.dll in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a PDF document with a long field in a Smart INdependent Glyphlets (SING) table in a TTF font, as exploited in the wild in September 2010. NOTE: some of these details are obtained from third party information.

CVSS v3 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

CISA Known Exploited Vulnerability

Ajouté au KEV
2022-06-08
Deadline remédiation
2022-06-22
Action requise
Apply updates per vendor instructions.
Ransomware
Non

Apps mobiles affectées

Configurations CPE vulnérables

Vendor Produit Plateforme Versions CPE 2.3 URI
adobe acrobat_reader Android ≥8.0 <8.2.5 cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:*
adobe acrobat_reader iOS ≥8.0 <8.2.5 cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:*
adobe acrobat_reader Android ≥9.0 <9.4 cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:*
adobe acrobat_reader iOS ≥9.0 <9.4 cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:*
Voir sur NVD ↗ Catalogue CISA KEV ↗