Vulnerability Name: | CVE-2010-0188 (CCN-56297) | ||||||||||||||||||||||||
Assigned: | 2010-02-16 | ||||||||||||||||||||||||
Published: | 2010-02-16 | ||||||||||||||||||||||||
Updated: | 2017-09-19 | ||||||||||||||||||||||||
Summary: | Unspecified vulnerability in Adobe Reader and Acrobat 8.x before 8.2.1 and 9.x before 9.3.1 allows attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unknown vectors. | ||||||||||||||||||||||||
CVSS v3 Severity: | 10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||||||||||||||||||
CVSS v2 Severity: | 9.3 High (CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C) 7.3 High (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:POC/RL:OF/RC:C)
7.3 High (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:POC/RL:OF/RC:C)
5.3 Medium (REDHAT Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:POC/RL:OF/RC:C)
| ||||||||||||||||||||||||
Vulnerability Type: | CWE-94 | ||||||||||||||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||||||||||||||
References: | Source: MITRE Type: CNA CVE-2010-0188 Source: SUSE Type: UNKNOWN SUSE-SR:2010:006 Source: CCN Type: RHSA-2010-0114 Critical: acroread security and bug fix update Source: SECUNIA Type: Vendor Advisory 38639 Source: SECUNIA Type: UNKNOWN 38915 Source: CCN Type: SECTRACK ID: 1023601 Adobe Reader and Acrobat Unspecified Flaw Lets Remote Users Execute Arbitrary Code Source: SECTRACK Type: UNKNOWN 1023601 Source: CCN Type: Adobe Product Security Bulletin APSB10-07 Security updates available for Adobe Reader and Acrobat Source: CONFIRM Type: Vendor Advisory http://www.adobe.com/support/security/bulletins/apsb10-07.html Source: CCN Type: GLSA-201009-05 Adobe Reader: Multiple vulnerabilities Source: CCN Type: OSVDB ID: 62526 Adobe Reader / Acrobat LibTiff Overflow Source: REDHAT Type: Vendor Advisory RHSA-2010:0114 Source: BID Type: UNKNOWN 38195 Source: CCN Type: BID-38195 Adobe Acrobat and Reader CVE-2010-0188 Remote Code Execution Vulnerability Source: VUPEN Type: Vendor Advisory ADV-2010-0399 Source: XF Type: UNKNOWN adobe-unspec-priv-escalation(56297) Source: XF Type: UNKNOWN adobe-unspec-priv-escalation(56297) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:8697 Source: CCN Type: CYBERSECURITY & INFRASTRUCTURE SECURITY AGENCY KNOWN EXPLOITED VULNERABILITIES CATALOG Source: EXPLOIT-DB Type: EXPLOIT Offensive Security Exploit Database [03-17-2010] Source: CCN Type: Packetstorm Security Web Site Adobe PDF LibTiff Integer Overflow Code Execution Source: SUSE Type: SUSE-SR:2010:006 SUSE Security Summary Report | ||||||||||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration RedHat 1: Configuration RedHat 2: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||||||||||||||
Oval Definitions | |||||||||||||||||||||||||
| |||||||||||||||||||||||||
BACK |