CVE-2010-3631: Input Validation
Published Oct 6, 2010
·Updated
Array index error in Adobe Reader and Acrobat 8.x before 8.2.5 and 9.x before 9.4 on Mac OS X allows attackers to execute arbitrary code via unspecified vectors.
Affected Software
49 affected components
Adobe Acrobat=8.0
Adobe Acrobat=8.1.7
Adobe Acrobat=8.2.1
Adobe Acrobat=8.1.2
Adobe Acrobat reader=8.1.6
Adobe Acrobat reader=8.2.3
Adobe Acrobat reader=8.2
Adobe Acrobat reader=8.2.2
Adobe Acrobat=8.2.4
Adobe Acrobat=8.1.1
Adobe Acrobat reader=8.2.4
Adobe Acrobat=8.2.3
Adobe Acrobat=8.2
Adobe Acrobat=8.1
Adobe Acrobat reader=8.0
Adobe Acrobat reader=8.1.5
Adobe Acrobat=8.2.2
Adobe Acrobat reader=8.2.1
Adobe Acrobat reader=8.1.7
Adobe Acrobat reader=8.1.4
Adobe Acrobat=8.1.5
Adobe Acrobat=8.1.4
Adobe Acrobat reader=8.1.2
Adobe Acrobat reader=8.1.1
Adobe Acrobat reader=8.1
Adobe Acrobat=8.1.6
Adobe Acrobat=8.1.3
Adobe Acrobat=9.3.3
Adobe Acrobat=9.2
Adobe Acrobat=9.1
Adobe Acrobat reader=9.2
Adobe Acrobat reader=9.1
Adobe Acrobat reader=9.1.3
Adobe Acrobat=9.0
Adobe Acrobat reader=9.1.2
Adobe Acrobat=9.3.4
Adobe Acrobat reader=9.3.3
Adobe Acrobat reader=9.1.1
Adobe Acrobat=9.3.2
Adobe Acrobat=9.1.1
Adobe Acrobat reader=9.3.4
Adobe Acrobat reader=9.3
Adobe Acrobat reader=9.0
Adobe Acrobat reader=9.3.2
Adobe Acrobat=9.3.1
Adobe Acrobat=9.1.2
Adobe Acrobat reader=9.3.1
Adobe Acrobat=9.1.3
Adobe Acrobat=9.3
Remediation
Event History
Oct 6, 2010
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-3631?
CVE-2010-3631 has been classified as a critical vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2010-3631?
To mitigate CVE-2010-3631, users should update Adobe Reader and Acrobat to version 8.2.5 or 9.4 or later.
3
What impact does CVE-2010-3631 have on my system?
CVE-2010-3631 may allow attackers to execute arbitrary code, potentially compromising the user's system.
4
Which applications are affected by CVE-2010-3631?
CVE-2010-3631 affects Adobe Reader and Acrobat version 8.x prior to 8.2.5 and 9.x prior to 9.4 on Mac OS X.
5
Is there a workaround for CVE-2010-3631 if I cannot update?
While updating is the best solution, disabling JavaScript in Adobe Reader and Acrobat may help reduce risk associated with CVE-2010-3631.