CVE-2010-2883
Stack-based buffer overflow in CoolType.dll in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a PDF document with a long field in a Smart INdependent Glyphlets (SING) table in a TTF font, as exploited in the wild in September 2010. NOTE: some of these details are obtained from third party information.
- Affected products
- Reader
- Adobe Acrobat
- < 8.2.5, 9.4
- Fix
- Available
- CVSS 2.0
- 9.3 HIGH
- CVSS 3.1
- 7.3 HIGH
- EPSS
- 82.5% (100th percentile)
- Weakness
- CWE-787
- NVD status
- Analyzed
- Published
- 2010-09-09
CVE-2010-2883 at NVD
13 known exploits for CVE-2010-2883
Proof-of-concept code and exploit modules indexed by Sploitus
Exploit for Out-of-bounds Write in Adobe Acrobat
Exploit for Out-of-bounds Write in Adobe Acrobat
Adobe CoolType SING Table "uniqueName" Stack Buffer Overflow
Adobe CoolType - SING Table 'uniqueName' Local Stack Buffer Overflow (Metasploit) (2)
Adobe CoolType - SING Table 'uniqueName' Remote Stack Buffer Overflow (Metasploit) (1)
Adobe Reader CoolType.dll buffer overflow
Adobe Reader CoolType.dll buffer overflow
Adobe Reader CoolType.dll buffer overflow
Adobe Reader CoolType.dll buffer overflow
Immunity Canvas: ACROBAT_TTF_SING
Adobe Reader Smart INdependent Glyplets (SING) Table Handling Vulnerability
Adobe CoolType SING Table "uniqueName" Stack Buffer Overflow
Adobe CoolType SING Table "uniqueName" Stack Buffer Overflow