2024-12-08 03:06:42 +00:00

210 lines
6.6 KiB
JSON

{
"id": "CVE-2010-2604",
"sourceIdentifier": "cve@mitre.org",
"published": "2011-01-13T01:00:01.553",
"lastModified": "2024-11-21T01:16:59.467",
"vulnStatus": "Modified",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "Multiple buffer overflows in the PDF Distiller in the BlackBerry Attachment Service component in Research In Motion (RIM) BlackBerry Enterprise Server 4.1.3 through 5.0.2, and Enterprise Server Express 5.0.1 and 5.0.2, allow remote attackers to execute arbitrary code via a crafted PDF file."
},
{
"lang": "es",
"value": "M\u00faltiples desbordamientos de b\u00fafer en PDF Distiller en el componente de BlackBerry Attachment Service de Research In Motion (RIM) BlackBerry Enterprise Server v4.1.3 hasta v5.0.2, y Enterprise Server Express v5.0.1 y v5.0.2, permite a atacantes remotos ejecutar c\u00f3digo de su elecci\u00f3n a trav\u00e9s de un archivo PDF manipulado."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:M/Au:N/C:C/I:C/A:C",
"baseScore": 9.3,
"accessVector": "NETWORK",
"accessComplexity": "MEDIUM",
"authentication": "NONE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "COMPLETE"
},
"baseSeverity": "HIGH",
"exploitabilityScore": 8.6,
"impactScore": 10.0,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": true
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-119"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:rim:blackberry_enterprise_server:4.1.3:*:*:*:*:*:*:*",
"matchCriteriaId": "E4BD344A-EE9C-4ECB-8CB1-35146FD6F056"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:rim:blackberry_enterprise_server:4.1.4:*:*:*:*:*:*:*",
"matchCriteriaId": "B1694E42-9AA5-4503-9714-CBDE388481A5"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:rim:blackberry_enterprise_server:4.1.5:*:*:*:*:*:*:*",
"matchCriteriaId": "16F378AF-E25B-4D60-AF7E-9E6FB228BF1B"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:rim:blackberry_enterprise_server:4.1.6:*:*:*:*:*:*:*",
"matchCriteriaId": "265D8F90-96C3-4627-ABA5-994C25F70A45"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:rim:blackberry_enterprise_server:4.1.6:mr4:*:*:*:*:*:*",
"matchCriteriaId": "F5A7A6BD-C0D7-40E0-BE1A-EC4396853296"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:rim:blackberry_enterprise_server:4.1.7:*:*:*:*:*:*:*",
"matchCriteriaId": "3E00E895-AEEC-406B-9DC2-D01916BB1CCE"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:rim:blackberry_enterprise_server:5.0.0:*:*:*:*:*:*:*",
"matchCriteriaId": "7EBA5181-F946-4F86-B5DB-07795ACF32D9"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:rim:blackberry_enterprise_server:5.0.1:*:*:*:*:*:*:*",
"matchCriteriaId": "85752BAD-8110-41B4-BAEF-4C97BFDA046A"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:rim:blackberry_enterprise_server:5.0.2:*:*:*:*:*:*:*",
"matchCriteriaId": "377D4536-5EAC-4F0A-94AD-4D326935A142"
}
]
}
]
},
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:rim:blackberry_enterprise_server_express:5.0.1:*:*:*:*:*:*:*",
"matchCriteriaId": "079D4AE1-AA56-4169-8073-E665452A0BF1"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:rim:blackberry_enterprise_server_express:5.0.2:*:*:*:*:*:*:*",
"matchCriteriaId": "4D861AF4-F293-40D9-BFA9-1EECBDFA8253"
}
]
}
]
}
],
"references": [
{
"url": "http://osvdb.org/70393",
"source": "cve@mitre.org"
},
{
"url": "http://secunia.com/advisories/42882",
"source": "cve@mitre.org",
"tags": [
"Vendor Advisory"
]
},
{
"url": "http://www.blackberry.com/btsc/KB25382",
"source": "cve@mitre.org",
"tags": [
"Vendor Advisory"
]
},
{
"url": "http://www.securityfocus.com/bid/45753",
"source": "cve@mitre.org"
},
{
"url": "http://www.securitytracker.com/id?1024953",
"source": "cve@mitre.org"
},
{
"url": "http://www.vupen.com/english/advisories/2011/0081",
"source": "cve@mitre.org",
"tags": [
"Vendor Advisory"
]
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/64621",
"source": "cve@mitre.org"
},
{
"url": "http://osvdb.org/70393",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://secunia.com/advisories/42882",
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Vendor Advisory"
]
},
{
"url": "http://www.blackberry.com/btsc/KB25382",
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Vendor Advisory"
]
},
{
"url": "http://www.securityfocus.com/bid/45753",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securitytracker.com/id?1024953",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.vupen.com/english/advisories/2011/0081",
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Vendor Advisory"
]
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/64621",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
]
}