HIGH
acroread: multiple code execution flaws (APSB10-21)
Published Oct 6, 2010
9.3
HIGHCVSS 2.0
EPSS 5.71%
Description
Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-2890, CVE-2010-3619, CVE-2010-3622, CVE-2010-3628, CVE-2010-3632, and CVE-2010-3658.
Affected products
No data.
Configuration 1
OR
- 8.0
- 8.1
- 8.1.1
- 8.1.2
- 8.1.3
- 8.1.4
- 8.1.5
- 8.1.6
- 8.1.7
- 8.2
- 8.2.1
- 8.2.2
- 8.2.3
- 8.2.4
- 8.0
- 8.1
- 8.1.1
- 8.1.2
- 8.1.4
- 8.1.5
- 8.1.6
- 8.1.7
- 8.2
- 8.2.1
- 8.2.2
- 8.2.3
- 8.2.4
Configuration 2
OR
- 9.0
- 9.1
- 9.1.1
- 9.1.2
- 9.1.3
- 9.2
- 9.3
- 9.3.1
- 9.3.2
- 9.3.3
- 9.3.4
- 9.0
- 9.1
- 9.1.1
- 9.1.2
- 9.1.3
- 9.2
- 9.3
- 9.3.1
- 9.3.2
- 9.3.3
- 9.3.4
No data.
Extras for RHEL 4
acroread-0:9.4.0-1.el4
Fixed · RHSA-2010:0743
Supplementary for Red Hat Enterprise Linux 5
acroread-0:9.4.0-1.el5
Fixed · RHSA-2010:0743
Red Hat Enterprise Linux 6
acroread
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Extras for RHEL 4 | acroread-0:9.4.0-1.el4 | Fixed | RHSA-2010:0743 |
| Supplementary for Red Hat Enterprise Linux 5 | acroread-0:9.4.0-1.el5 | Fixed | RHSA-2010:0743 |
| Red Hat Enterprise Linux 6 | acroread | Not affected | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (13)
- http://lists.opensuse.org/opensuse-security-announce/2010-10/msg00001.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2010-10/msg00006.html vendor-advisoryx_refsource_SUSE
- http://secunia.com/advisories/43025 third-party-advisoryx_refsource_SECUNIA
- http://security.gentoo.org/glsa/glsa-201101-08.xml vendor-advisoryx_refsource_GENTOO
- http://www.adobe.com/support/security/bulletins/apsb10-21.html x_refsource_CONFIRMPatchVendor Advisory
- http://www.redhat.com/support/errata/RHSA-2010-0743.html vendor-advisoryx_refsource_REDHAT
- http://www.us-cert.gov/cas/techalerts/TA10-279A.html third-party-advisoryx_refsource_CERTUS Government Resource
- http://www.vupen.com/english/advisories/2011/0191 vdb-entryx_refsource_VUPEN
- https://access.redhat.com/security/cve/CVE-2010-3621 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=639890 Issue Tracking
- https://nvd.nist.gov/vuln/detail/CVE-2010-3621
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7386 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2010-3621
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner adobe
Published Oct 6, 2010
Updated Aug 7, 2024
Reserved Sep 28, 2010
Link CVE-2010-3621
CISA Vulnrichment
Updated n/a