---
id: CVE-2010-0188
title: >-
  Unspecified vulnerability in Adobe Reader and Acrobat 8.x before 8.2.1 and 9.x
  before 9.3.1 allows attackers to cause a denial of service (application crash)
  or possibly execute arbitrary code via unknown vectors.
summary: >-
  Unspecified vulnerability in Adobe Reader and Acrobat 8.x before 8.2.1 and 9.x
  before 9.3.1 allows attackers to cause a denial of service (application crash)
  or possibly execute arbitrary code via unknown vectors.
severity: high
cvss: 7.8
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'
vendor: adobe
product: acrobat
affected:
  - 'acrobat >= 8.0, < 8.2.1'
  - 'acrobat >= 9.0, < 9.3.1'
  - 'acrobat_reader >= 8.0, < 8.2.1'
  - 'acrobat_reader >= 9.0, < 9.3.1'
patched:
  - acrobat 9.3.1
  - acrobat_reader 9.3.1
published: '2010-02-22'
updated: '2026-08-14'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2010-0188'
references:
  - url: 'http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00004.html'
    label: psirt@adobe.com
  - url: 'http://secunia.com/advisories/38639'
    label: psirt@adobe.com
  - url: 'http://secunia.com/advisories/38915'
    label: psirt@adobe.com
  - url: 'http://securitytracker.com/id?1023601'
    label: psirt@adobe.com
  - url: 'http://www.adobe.com/support/security/bulletins/apsb10-07.html'
    label: psirt@adobe.com
  - url: 'http://www.redhat.com/support/errata/RHSA-2010-0114.html'
    label: psirt@adobe.com
  - url: 'http://www.securityfocus.com/bid/38195'
    label: psirt@adobe.com
  - url: 'http://www.vupen.com/english/advisories/2010/0399'
    label: psirt@adobe.com
  - url: 'https://exchange.xforce.ibmcloud.com/vulnerabilities/56297'
    label: psirt@adobe.com
  - url: >-
      https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8697
    label: psirt@adobe.com
  - url: 'http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00004.html'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'http://secunia.com/advisories/38639'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'http://secunia.com/advisories/38915'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'http://securitytracker.com/id?1023601'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'http://www.adobe.com/support/security/bulletins/apsb10-07.html'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'http://www.redhat.com/support/errata/RHSA-2010-0114.html'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'http://www.securityfocus.com/bid/38195'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'http://www.vupen.com/english/advisories/2010/0399'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'https://exchange.xforce.ibmcloud.com/vulnerabilities/56297'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: >-
      https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8697
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: >-
      https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2010-0188
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
tags:
  - nvd
  - kev
  - in-the-wild
  - exploit-available
epss: 0.88246
epssPercentile: 0.99763
kev: true
kevDateAdded: '2022-03-03'
kevDueDate: '2022-03-24'
kevRansomware: true
exploited: true
exploitAvailable: true
ingestedAt: '2026-08-14T06:15:26.927Z'
exploits:
  exploitdb: true
  metasploit:
    - exploit/windows/fileformat/adobe_libtiff
  checkedAt: '2026-09-23T07:13:14.768Z'
---

## Overview

Unspecified vulnerability in Adobe Reader and Acrobat 8.x before 8.2.1 and 9.x before 9.3.1 allows attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unknown vectors.

## Affected

- `acrobat >= 8.0, < 8.2.1`
- `acrobat >= 9.0, < 9.3.1`
- `acrobat_reader >= 8.0, < 8.2.1`
- `acrobat_reader >= 9.0, < 9.3.1`

## Remediation

Upgrade past the affected range:

- `acrobat 9.3.1`
- `acrobat_reader 9.3.1`
