CVE-2010-2889: Input Validation
Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allows attackers to execute arbitrary code via a crafted font, a different vulnerability than CVE-2010-3626.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2889?
CVE-2010-2889 is classified as a critical vulnerability because it allows attackers to execute arbitrary code.
How do I fix CVE-2010-2889?
To fix CVE-2010-2889, update Adobe Reader and Acrobat to version 9.4 or later for 9.x, and version 8.2.5 or later for 8.x.
What software is affected by CVE-2010-2889?
CVE-2010-2889 affects Adobe Reader and Acrobat versions 8.x before 8.2.5 and 9.x before 9.4.
What is the impact of CVE-2010-2889?
The impact of CVE-2010-2889 is significant, as it can lead to a complete system compromise if exploited.
Is CVE-2010-2889 actively exploited?
There have been reports of CVE-2010-2889 being actively exploited in the wild, particularly through crafted fonts.