Common Vulnerabilities and Exposures assigned an identifier CVE-2010-2862 to the following vulnerability: Name: CVE-2010-2862 URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2862 Assigned: 20100727 Reference: MISC: http://securityevaluators.com/files/papers/CrashAnalysis.pdf Reference: MISC: http://www.zdnet.co.uk/news/security-threats/2010/08/04/adobe-confirms-pdf-security-hole-in-reader-40089737/ Reference: SECUNIA:40766 Reference: URL: http://secunia.com/advisories/40766 Integer overflow in CoolType.dll in Adobe Reader 8.2.3 and 9.3.3, and Acrobat 9.3.3, allows remote attackers to execute arbitrary code via a TrueType font with a large maxCompositePoints value in a Maximum Profile (maxp) table. This is also mentioned in the following Adobe bulletin: http://www.adobe.com/support/security/bulletins/apsb10-17.html
This issue has been addressed in following products: Extras for RHEL 4 Extras for Red Hat Enterprise Linux 5 Via RHSA-2010:0636 https://rhn.redhat.com/errata/RHSA-2010-0636.html