Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-2862

Опубликовано: 04 авг. 2010
Источник: redhat
CVSS2: 6.8

Описание

Integer overflow in CoolType.dll in Adobe Reader 8.2.3 and 9.3.3, and Acrobat 9.3.3, allows remote attackers to execute arbitrary code via a TrueType font with a large maxCompositePoints value in a Maximum Profile (maxp) table.

Дополнительная информация

Статус:

Critical
Дефект:
CWE-190
https://bugzilla.redhat.com/show_bug.cgi?id=621687acroread: integer overflow flaw allows remote arbitrary code execution

6.8 Medium

CVSS2

Связанные уязвимости

nvd
почти 16 лет назад

Integer overflow in CoolType.dll in Adobe Reader 8.2.3 and 9.3.3, and Acrobat 9.3.3, allows remote attackers to execute arbitrary code via a TrueType font with a large maxCompositePoints value in a Maximum Profile (maxp) table.

github
около 4 лет назад

Integer overflow in CoolType.dll in Adobe Reader 8.2.3 and 9.3.3, and Acrobat 9.3.3, allows remote attackers to execute arbitrary code via a TrueType font with a large maxCompositePoints value in a Maximum Profile (maxp) table.

CVSS3: 8.1
fstec
почти 16 лет назад

Уязвимость программ для просмотра текста Adobe Reader и Acrobat, связанная с целочисленным переполнением, позволяющая нарушителю выполнить произвольный код

6.8 Medium

CVSS2