Back

HIGH KEV

acroread: multiple code execution flaws (APSB10-02)

Published Jan 13, 2010 ·Due Jun 22, 2022

Description

The U3D implementation in Adobe Reader and Acrobat 9.x before 9.3, 8.x before 8.2 on Windows and Mac OS X, and 7.x before 7.1.4 allows remote attackers to execute arbitrary code via malformed U3D data in a PDF document, related to a CLODProgressiveMeshDeclaration "array boundary issue," a different vulnerability than CVE-2009-2994.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (19)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner adobe
Published Jan 13, 2010
Updated Oct 22, 2025
Reserved Nov 16, 2009
CISA Vulnrichment
Updated Feb 4, 2025
NVD
Status Analyzed
Modified Jun 16, 2026
Red Hat
Severity Critical
Public date Jan 12, 2010