Stack-based buffer overflow in Adobe Acrobat and Adobe Reader - CVE-2010-2883
Published: January 1, 1970 / Updated: November 20, 2020
Vulnerability details
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to boundary error when handling specially crafted fonts within PDF document. A remote attacker can create a specially crafted PDF document, trick the victim into opening it, cause stack-based buffer overflow and execute arbitrary code on vulnerable system.
Successful exploitation of the vulnerability results in compromise of vulnerable system.
Note: this vulnerability is being actively exploited.
Affected software
Adobe Reader
How to mitigate CVE-2010-2883
Links to Public Exploits and PoC-codes
- Exploit #714 - Adobe CoolType - SING Table 'uniqueName' Stack Buffer Overflow (Metasploit) (1) (March 18, 2020)
- Exploit #715 - Adobe CoolType - SING Table 'uniqueName' Stack Buffer Overflow (Metasploit) (2) (March 18, 2020)
- Exploit #1651 - Adobe CoolType SING Table "uniqueName" Stack Buffer Overflow (March 18, 2020)
- Exploit #1721 - Adobe CoolType SING Table "uniqueName" Stack Buffer Overflow (March 18, 2020)