9.3

CVE-2010-1285

Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code via unspecified manipulations involving the newclass (0x58) operator and an "invalid pointer vulnerability" that triggers memory corruption, a different vulnerability than CVE-2010-2168 and CVE-2010-2201.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Adobe ≫ Acrobat Version 9.0
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 9.1
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 9.1.1
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 9.1.2
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 9.1.3
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 9.2
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 9.3
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 9.3.1
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 9.3.2
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 9.0
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 9.1
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 9.1.1
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 9.1.2
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 9.1.3
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 9.2
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 9.3
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 9.3.1
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 9.3.2
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 8.0
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 8.1
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 8.1.1
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 8.1.2
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 8.1.3
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 8.1.4
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 8.1.5
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 8.1.6
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 8.1.7
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 8.2
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 8.2.1
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Version 8.2.2
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 8.0
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 8.1
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 8.1.1
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 8.1.2
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 8.1.4
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 8.1.5
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 8.1.6
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 8.1.7
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 8.2.1
   Apple ≫ macOS X
   Microsoft ≫ Windows
Adobe ≫ Acrobat Reader Version 8.2.2
   Apple ≫ macOS X
   Microsoft ≫ Windows
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 4.17% 0.896
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

http://www.adobe.com/support/security/bulletins/apsb10-15.html
Patch
Vendor Advisory
http://www.securitytracker.com/id?1024159
http://www.vupen.com/english/advisories/2010/1636
http://www.securityfocus.com/archive/1/512099
http://www.securityfocus.com/bid/41232
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6725