CVE-2010-2604

high

Description

Multiple buffer overflows in the PDF Distiller in the BlackBerry Attachment Service component in Research In Motion (RIM) BlackBerry Enterprise Server 4.1.3 through 5.0.2, and Enterprise Server Express 5.0.1 and 5.0.2, allow remote attackers to execute arbitrary code via a crafted PDF file.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/64621

http://www.vupen.com/english/advisories/2011/0081

http://www.securitytracker.com/id?1024953

http://www.securityfocus.com/bid/45753

http://www.blackberry.com/btsc/KB25382

http://secunia.com/advisories/42882

http://osvdb.org/70393

Details

Source: Mitre, NVD

Published: 2011-01-13

Updated: 2017-08-17

Risk Information

CVSS v2

Base Score: 9.3

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Severity: High

CVSS v3

Base Score: 8.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Severity: High