Lucene search

K
cveAdobeCVE-2010-2201
HistoryJun 30, 2010 - 6:30 p.m.

CVE-2010-2201

2010-06-3018:30:01
CWE-399
adobe
web.nvd.nist.gov
60
adobe reader
acrobat
cve-2010-2201
arbitrary code execution
crafted pdf
flash content
vulnerability

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.3

Confidence

Low

EPSS

0.104

Percentile

95.1%

Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code via a PDF file with crafted Flash content involving the (1) pushstring (0x2C) operator, (2) debugfile (0xF1) operator, and an “invalid pointer vulnerability” that triggers memory corruption, a different vulnerability than CVE-2010-1285 and CVE-2010-2168.

Affected configurations

Nvd
Node
adobeacrobatMatch9.0
OR
adobeacrobatMatch9.1
OR
adobeacrobatMatch9.1.1
OR
adobeacrobatMatch9.1.2
OR
adobeacrobatMatch9.1.3
OR
adobeacrobatMatch9.2
OR
adobeacrobatMatch9.3
OR
adobeacrobatMatch9.3.1
OR
adobeacrobatMatch9.3.2
AND
applemac_os_x
OR
microsoftwindows
Node
adobeacrobat_readerMatch9.0
OR
adobeacrobat_readerMatch9.1
OR
adobeacrobat_readerMatch9.1.1
OR
adobeacrobat_readerMatch9.1.2
OR
adobeacrobat_readerMatch9.1.3
OR
adobeacrobat_readerMatch9.2
OR
adobeacrobat_readerMatch9.3
OR
adobeacrobat_readerMatch9.3.1
OR
adobeacrobat_readerMatch9.3.2
AND
applemac_os_x
OR
microsoftwindows
Node
adobeacrobatMatch8.0
OR
adobeacrobatMatch8.1
OR
adobeacrobatMatch8.1.1
OR
adobeacrobatMatch8.1.2
OR
adobeacrobatMatch8.1.3
OR
adobeacrobatMatch8.1.4
OR
adobeacrobatMatch8.1.5
OR
adobeacrobatMatch8.1.6
OR
adobeacrobatMatch8.1.7
OR
adobeacrobatMatch8.2
OR
adobeacrobatMatch8.2.1
OR
adobeacrobatMatch8.2.2
AND
applemac_os_x
OR
microsoftwindows
Node
adobeacrobat_readerMatch8.0
OR
adobeacrobat_readerMatch8.1
OR
adobeacrobat_readerMatch8.1.1
OR
adobeacrobat_readerMatch8.1.2
OR
adobeacrobat_readerMatch8.1.4
OR
adobeacrobat_readerMatch8.1.5
OR
adobeacrobat_readerMatch8.1.6
OR
adobeacrobat_readerMatch8.1.7
OR
adobeacrobat_readerMatch8.2.1
OR
adobeacrobat_readerMatch8.2.2
AND
applemac_os_x
OR
microsoftwindows
VendorProductVersionCPE
adobeacrobat9.1cpe:/a:adobe:acrobat:9.1:::
adobeacrobat9.1.3cpe:/a:adobe:acrobat:9.1.3:::
adobeacrobat9.3.1cpe:/a:adobe:acrobat:9.3.1:::
adobeacrobat9.3.2cpe:/a:adobe:acrobat:9.3.2:::
adobeacrobat9.1.1cpe:/a:adobe:acrobat:9.1.1:::
adobeacrobat9.0cpe:/a:adobe:acrobat:9.0:::
adobeacrobat9.2cpe:/a:adobe:acrobat:9.2:::
adobeacrobat9.1.2cpe:/a:adobe:acrobat:9.1.2:::
adobeacrobat9.3cpe:/a:adobe:acrobat:9.3:::

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.3

Confidence

Low

EPSS

0.104

Percentile

95.1%