CVE-2010-2883: Adobe Acrobat and Reader Stack-Based Buffer Overflow Vulnerability
Adobe Acrobat and Reader contain a stack-based buffer overflow vulnerability that allows remote attackers to execute code or cause denial-of-service (DoS).
Other sources
Stack-based buffer overflow in CoolType.dll in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a PDF document with a long field in a Smart INdependent Glyphlets (SING) table in a TTF font, as exploited in the wild in September 2010. NOTE: some of these details are obtained from third party information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2883?
CVE-2010-2883 has a critical severity rating due to its potential for remote code execution and denial-of-service attacks.
How do I fix CVE-2010-2883?
To address CVE-2010-2883, it is recommended to update Adobe Acrobat and Reader to version 9.4 or later for 9.x and version 8.2.5 or later for 8.x.
Which versions of Adobe Acrobat are affected by CVE-2010-2883?
Affected versions of Adobe Acrobat include 8.x before 8.2.5 and 9.x before 9.4.
Is Adobe Reader vulnerable to CVE-2010-2883?
Yes, Adobe Reader versions 8.x before 8.2.5 and 9.x before 9.4 are vulnerable to CVE-2010-2883.
What type of vulnerability is CVE-2010-2883?
CVE-2010-2883 is a stack-based buffer overflow vulnerability located in the CoolType.dll component of Adobe Acrobat and Reader.