CVE-2010-2601: Buffer Overflow
Multiple buffer overflows in the PDF distiller in the Attachment Service component in Research In Motion (RIM) BlackBerry Enterprise Server (BES) software 4.1.7 and earlier and 5.0.0 through 5.0.2, and BlackBerry Professional Software 4.1.4 and earlier, allow user-assisted remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted PDF document.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2601?
CVE-2010-2601 has a high severity rating due to the potential for remote code execution and denial of service.
How do I fix CVE-2010-2601?
To fix CVE-2010-2601, users should upgrade to the latest version of the BlackBerry Enterprise Server or BlackBerry Professional Software that addresses the vulnerability.
What systems are affected by CVE-2010-2601?
CVE-2010-2601 affects multiple versions of BlackBerry Enterprise Server 3.6 up to 5.0.2 and BlackBerry Professional Software 4.1.4 and earlier.
What type of vulnerability is CVE-2010-2601?
CVE-2010-2601 is classified as a buffer overflow vulnerability that occurs in the PDF distiller of the BlackBerry services.
Can CVE-2010-2601 be exploited remotely?
Yes, CVE-2010-2601 can be exploited remotely by user-assisted attackers to cause potential harm to the affected system.