CVE-2010-1285: Input Validation
Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code via unspecified manipulations involving the newclass (0x58) operator and an "invalid pointer vulnerability" that triggers memory corruption, a different vulnerability than CVE-2010-2168 and CVE-2010-2201.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2010-1285?
CVE-2010-1285 is rated as critical due to its potential to allow remote code execution.
How do I fix CVE-2010-1285?
To fix CVE-2010-1285, update Adobe Reader and Acrobat to versions 9.3.3, 8.2.3 or later.
Which versions of Adobe Reader are affected by CVE-2010-1285?
Adobe Reader versions 9.x before 9.3.3 and 8.x before 8.2.3 are affected by CVE-2010-1285.
Can CVE-2010-1285 be exploited on macOS?
Yes, CVE-2010-1285 can be exploited on macOS systems running the affected versions of Adobe Reader.
What is the impact of CVE-2010-1285?
The impact of CVE-2010-1285 is that attackers can execute arbitrary code on the victim's system through a crafted PDF document.