CVE-2010-2862

EXPLOITED

Adobe Reader <9.3.3 - RCE

Title source: llm

Description

Integer overflow in CoolType.dll in Adobe Reader 8.2.3 and 9.3.3, and Acrobat 9.3.3, allows remote attackers to execute arbitrary code via a TrueType font with a large maxCompositePoints value in a Maximum Profile (maxp) table.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Ramz Afzar · textdoswindows
https://www.exploit-db.com/exploits/14642

Scores

EPSS 0.3757
EPSS Percentile 97.2%

Details

VulnCheck KEV 2012-10-18
CWE
CWE-189
Status published
Products (3)
adobe/acrobat 9.3.3
adobe/acrobat_reader 8.2.3
adobe/acrobat_reader 9.3.3
Published Aug 05, 2010
Tracked Since Feb 18, 2026