CVE-2010-3626: Input Validation
Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allows attackers to execute arbitrary code via a crafted font, a different vulnerability than CVE-2010-2889.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2010-3626?
CVE-2010-3626 has a critical severity rating as it allows attackers to execute arbitrary code.
How do I fix CVE-2010-3626?
To fix CVE-2010-3626, update Adobe Reader and Acrobat to version 9.4 or newer for 9.x, and 8.2.5 or newer for 8.x.
Which software versions are affected by CVE-2010-3626?
CVE-2010-3626 affects Adobe Reader and Acrobat versions 8.x before 8.2.5 and 9.x before 9.4.
What type of attack is possible with CVE-2010-3626?
CVE-2010-3626 can be exploited by attackers to execute arbitrary code via a crafted font.
Is there a workaround for CVE-2010-3626?
A recommended workaround for CVE-2010-3626 includes disabling the rendering of fonts in Adobe Reader and Acrobat until the software is updated.