CVE-2008-2992

Stack-based buffer overflow in Adobe Acrobat and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary code via a PDF file that...

Basic Information

CVE State
PUBLISHED
Reserved Date
July 02, 2008
Published Date
November 04, 2008
Last Updated
February 10, 2025
Vendor
n/a
Product
n/a
Description
Stack-based buffer overflow in Adobe Acrobat and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary code via a PDF file that calls the util.printf JavaScript function with a crafted format string argument, a related issue to CVE-2008-1104.

CVSS Scores

SSVC Information

Exploitation
active
Technical Impact
total

Exploit Status

Exploited in the Wild
Yes (added 2022-03-03 00:00:00 UTC) Source

Known Exploited Vulnerability Information

Source Added Date
CISA 2022-03-03 00:00:00 UTC

Scanner Integrations

Potential Proof of Concepts

Warning: These PoCs have not been tested and could contain malware. Use at your own risk.

adobe_utilprintf

Type: metasploit • Created: Unknown

Metasploit module for CVE-2008-2992

adobe_utilprintf

Type: metasploit • Created: Unknown

Metasploit module for CVE-2008-2992