CVE-2010-2205

Adobe Acrobat and Reader 9.x < 9.3.3 and 8.x < 8.2.3 - Remote Code Execution

Title source: llm
STIX 2.1

Description

Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, access uninitialized memory, which allows attackers to execute arbitrary code via unspecified vectors.

References (4)

Core 4
Core References
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2010/1636
Patch, Vendor Advisory x_refsource_confirm
http://www.adobe.com/support/security/bulletins/apsb10-15.html
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7070
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1024159

Scores

EPSS 0.0430
EPSS Percentile 89.9%

Details

CWE
CWE-94
Status published
Products (40)
adobe/acrobat 9.0
adobe/acrobat 9.1
adobe/acrobat 9.1.1
adobe/acrobat 9.1.2
adobe/acrobat 9.1.3
adobe/acrobat 9.2
adobe/acrobat 9.3
adobe/acrobat 9.3.1
adobe/acrobat 9.3.2
adobe/acrobat 8.0
... and 30 more
Published Jun 30, 2010
Tracked Since Feb 18, 2026