CVE-2010-0202Improper Restriction of Operations within the Bounds of a Memory Buffer in Adobe Acrobat

Severity
9.3CRITICALNVD
EPSS
12.8%
top 5.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 14
Latest updateMay 2

Description

Buffer overflow in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-0198, CVE-2010-0199, and CVE-2010-0203.

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 8.6 | Impact: 10.0

Affected Packages2 packages

NVDadobe/acrobat_reader17 versions+16
NVDadobe/acrobat19 versions+18

Patches

🔴Vulnerability Details

4
GHSA
GHSA-98g7-ggp2-2q96: Buffer overflow in Adobe Reader and Acrobat 92022-05-02
GHSA
GHSA-jrmq-vqww-4jq8: Buffer overflow in Adobe Reader and Acrobat 92022-05-02
GHSA
GHSA-3q94-6qx8-j4xw: Buffer overflow in Adobe Reader and Acrobat 92022-05-02
GHSA
GHSA-4rhv-54g5-f4cm: Buffer overflow in Adobe Reader and Acrobat 92022-05-02

📋Vendor Advisories

4
Red Hat
Acroread: Multiple code execution flaws (APSB10-09)2010-04-13
Red Hat
Acroread: Multiple code execution flaws (APSB10-09)2010-04-13
Red Hat
Acroread: Multiple code execution flaws (APSB10-09)2010-04-13
Red Hat
Acroread: Multiple code execution flaws (APSB10-09)2010-04-13

💬Community

1
Bugzilla
Acroread: Multiple code execution flaws (APSB10-09)2010-04-12
CVE-2010-0202 — Adobe Acrobat vulnerability | cvebase