Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2008-2992
Description:Stack-based buffer overflow in Adobe Acrobat and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary code via a PDF file that calls the util.printf JavaScript function with a crafted format string argument, a related issue to CVE-2008-1104.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2008-2992
BugTraq ID: 30035
http://www.securityfocus.com/bid/30035
BugTraq ID: 32091
http://www.securityfocus.com/bid/32091
Bugtraq: 20081104 CORE-2008-0526: Adobe Reader Javascript Printf Buffer Overflow (Google Search)
http://www.securityfocus.com/archive/1/498032/100/0/threaded
Bugtraq: 20081104 Secunia Research: Adobe Acrobat/Reader "util.printf()" Buffer Overflow (Google Search)
http://www.securityfocus.com/archive/1/498027/100/0/threaded
Bugtraq: 20081104 ZDI-08-072: Adobe Acrobat PDF Javascript printf Stack Overflow Vulnerability (Google Search)
http://www.securityfocus.com/archive/1/498055/100/0/threaded
Cert/CC Advisory: TA08-309A
http://www.us-cert.gov/cas/techalerts/TA08-309A.html
CERT/CC vulnerability note: VU#593409
http://www.kb.cert.org/vuls/id/593409
https://www.exploit-db.com/exploits/6994
https://www.exploit-db.com/exploits/7006
http://secunia.com/secunia_research/2008-14/
http://www.coresecurity.com/content/adobe-reader-buffer-overflow
http://www.zerodayinitiative.com/advisories/ZDI-08-072/
http://osvdb.org/49520
RedHat Security Advisories: RHSA-2008:0974
http://www.redhat.com/support/errata/RHSA-2008-0974.html
http://www.securitytracker.com/id?1021140
http://secunia.com/advisories/29773
http://secunia.com/advisories/32700
http://secunia.com/advisories/32872
http://secunia.com/advisories/35163
http://securityreason.com/securityalert/4549
http://download.oracle.com/sunalerts/1019937.1.html
SuSE Security Announcement: SUSE-SR:2008:026 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2008-11/msg00002.html
http://www.vupen.com/english/advisories/2008/3001
http://www.vupen.com/english/advisories/2009/0098




© 1998-2024 E-Soft Inc. All rights reserved.