CVE-2010-2883
Description
Stack-based buffer overflow in CoolType.dll in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a PDF document with a long field in a Smart INdependent Glyphlets (SING) table in a TTF font, as exploited in the wild in September 2010. NOTE: some of these details are obtained from third party information.
EPSS (Exploit Prediction Scoring System)
EPSS (Exploit Prediction Scoring System)
Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.
EPSS Score Trend (Last 90 Days)
Out-of-bounds Write
DraftCommon Consequences
Applicable Platforms
Adobe CoolType - SING Table 'uniqueName' Remote Stack …
Verified Metasploit Framework (MSF)Adobe CoolType - SING Table 'uniqueName' Remote Stack Buffer Overflow (Metasploit) (1)
View Exploit Code →Adobe CoolType - SING Table 'uniqueName' Local Stack …
Verified Metasploit Framework (MSF)Adobe CoolType - SING Table 'uniqueName' Local Stack Buffer Overflow (Metasploit) (2)
View Exploit Code →Acrobat by Adobe
cpe:2.3:a:adobe:acrobat:*:*:*:*:*:*:*:*
Acrobat Reader by Adobe
cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:*
Acrobat Reader by Adobe
cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:*
Acrobat by Adobe
cpe:2.3:a:adobe:acrobat:*:*:*:*:*:*:*:*