Lucene search

K
cveAdobeCVE-2010-2168
HistoryJun 30, 2010 - 6:30 p.m.

CVE-2010-2168

2010-06-3018:30:01
CWE-399
adobe
web.nvd.nist.gov
55
cve-2010-2168
adobe reader
acrobat
arbitrary code execution
pdf
flash content
memory corruption

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.3

Confidence

Low

EPSS

0.104

Percentile

95.1%

Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code via a PDF file with crafted Flash content, involving the newfunction (0x44) operator and an “invalid pointer vulnerability” that triggers memory corruption, a different vulnerability than CVE-2010-1285 and CVE-2010-2201.

Affected configurations

Nvd
Node
adobeacrobatMatch9.0
OR
adobeacrobatMatch9.1
OR
adobeacrobatMatch9.1.1
OR
adobeacrobatMatch9.1.2
OR
adobeacrobatMatch9.1.3
OR
adobeacrobatMatch9.2
OR
adobeacrobatMatch9.3
OR
adobeacrobatMatch9.3.1
OR
adobeacrobatMatch9.3.2
AND
applemac_os_x
OR
microsoftwindows
Node
adobeacrobat_readerMatch9.0
OR
adobeacrobat_readerMatch9.1
OR
adobeacrobat_readerMatch9.1.1
OR
adobeacrobat_readerMatch9.1.2
OR
adobeacrobat_readerMatch9.1.3
OR
adobeacrobat_readerMatch9.2
OR
adobeacrobat_readerMatch9.3
OR
adobeacrobat_readerMatch9.3.1
OR
adobeacrobat_readerMatch9.3.2
AND
applemac_os_x
OR
microsoftwindows
Node
adobeacrobatMatch8.0
OR
adobeacrobatMatch8.1
OR
adobeacrobatMatch8.1.1
OR
adobeacrobatMatch8.1.2
OR
adobeacrobatMatch8.1.3
OR
adobeacrobatMatch8.1.4
OR
adobeacrobatMatch8.1.5
OR
adobeacrobatMatch8.1.6
OR
adobeacrobatMatch8.1.7
OR
adobeacrobatMatch8.2
OR
adobeacrobatMatch8.2.1
OR
adobeacrobatMatch8.2.2
AND
applemac_os_x
OR
microsoftwindows
Node
adobeacrobat_readerMatch8.0
OR
adobeacrobat_readerMatch8.1
OR
adobeacrobat_readerMatch8.1.1
OR
adobeacrobat_readerMatch8.1.2
OR
adobeacrobat_readerMatch8.1.4
OR
adobeacrobat_readerMatch8.1.5
OR
adobeacrobat_readerMatch8.1.6
OR
adobeacrobat_readerMatch8.1.7
OR
adobeacrobat_readerMatch8.2.1
OR
adobeacrobat_readerMatch8.2.2
AND
applemac_os_x
OR
microsoftwindows
VendorProductVersionCPE
adobeacrobat9.1cpe:/a:adobe:acrobat:9.1:::
adobeacrobat9.1.3cpe:/a:adobe:acrobat:9.1.3:::
adobeacrobat9.3.1cpe:/a:adobe:acrobat:9.3.1:::
adobeacrobat9.3.2cpe:/a:adobe:acrobat:9.3.2:::
adobeacrobat9.1.1cpe:/a:adobe:acrobat:9.1.1:::
adobeacrobat9.0cpe:/a:adobe:acrobat:9.0:::
adobeacrobat9.2cpe:/a:adobe:acrobat:9.2:::
adobeacrobat9.1.2cpe:/a:adobe:acrobat:9.1.2:::
adobeacrobat9.3cpe:/a:adobe:acrobat:9.3:::

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.3

Confidence

Low

EPSS

0.104

Percentile

95.1%