CVE-2010-3625: Code Injection
Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attackers to execute arbitrary code via unspecified vectors, related to a "prefix protocol handler vulnerability."
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2010-3625?
CVE-2010-3625 has been classified as a critical vulnerability that allows attackers to execute arbitrary code.
How do I fix CVE-2010-3625?
To resolve CVE-2010-3625, update Adobe Reader and Acrobat to version 9.4 or later for version 9.x and to version 8.2.5 or later for version 8.x.
Which software versions are affected by CVE-2010-3625?
CVE-2010-3625 affects Adobe Reader and Acrobat versions 8.x before 8.2.5 and 9.x before 9.4 on both Windows and Mac OS X.
What type of attack does CVE-2010-3625 facilitate?
CVE-2010-3625 can facilitate attacks that result in executing arbitrary code on a vulnerable system, potentially leading to a system compromise.
Is there any workaround for CVE-2010-3625?
While the best mitigation for CVE-2010-3625 is to apply the latest updates, users can mitigate risk by avoiding opening unknown PDF documents until updated.