Computer Security
[EN] securityvulns.ru
no-pyccku



CVECVE-2008-2042
StatusCandidate
DescriptionThe Javascript API in Adobe Acrobat Professional 7.0.9 and possibly 8.1.1 exposes a dangerous method, which allows remote attackers to (1) execute arbitrary commands or (2) trigger a buffer overflow via a crafted PDF file that invokes app.checkForUpdate with a malicious callback function.
PhaseAssigned (30.04.2008)
SecurityVulns:Adobe Acrobat multiple security vulnerabilities
NVD:http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-2042
ReferencesBUGTRAQ : 20080507 Adobe Acrobat Professional Javascript For PDF Security Feature Bypass and Memory Corruption Vulnerabilities
 CONFIRM : http://www.adobe.com/support/security/bulletins/ap...
 SECTRACK : 1019971
 XF : adobe-appcheckforupdate-code-execution(42237)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru