VDB
GSD-2008-2992
GSD-2008-2992
PUBLISHED
CVSS 7.800000190734863 HIGH
Stack-based buffer overflow in Adobe Acrobat and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary code via a PDF file that calls the util.printf JavaScript function with a crafted format string argument, a related issue to CVE-2008-1104.
Risk Scores
CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
Timeline
- Jun 4, 2008 CVE Published
- Nov 5, 2008 PoC Published
- May 3, 2010 PoC Published
- Sep 25, 2010 PoC Published
- Sep 23, 2014 PoC Published
- May 29, 2018 PoC Published
- Jul 2, 2021 PoC Published
- Jan 24, 2023 PoC Published
- Jun 14, 2023 PoC Published
- Dec 24, 2024 PoC Published
- Feb 6, 2025 PoC Published
- Feb 23, 2025 PoC Published
References
- http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=909609 url
- 20081104 Secunia Research: Adobe Acrobat/Reader "util.printf()" Buffer Overflow mailing-list
- 35163 third-party-advisory
- 32872 third-party-advisory
- 4549 third-party-advisory
- http://www.coresecurity.com/content/adobe-reader-buffer-overflow url
- http://www.zerodayinitiative.com/advisories/ZDI-08-072/ url
- ADV-2009-0098 vdb
- 29773 third-party-advisory
- TA08-309A third-party-advisory
- 1021140 vdb
- 20081104 CORE-2008-0526: Adobe Reader Javascript Printf Buffer Overflow mailing-list
- ADV-2008-3001 vdb
- RHSA-2008:0974 vendor-advisory
- 30035 vdb
- 32700 third-party-advisory
- http://secunia.com/secunia_research/2008-14/ url
- 32091 vdb
- 49520 vdb
- 249366 vendor-advisory
…and 8 more