VYPR
Unrated severityNVD Advisory· Published Nov 5, 2008· Updated Apr 23, 2026

CVE-2008-4817

CVE-2008-4817

Description

The Download Manager in Adobe Acrobat Professional and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary code via a crafted PDF document that calls an AcroJS function with a long string argument, triggering heap corruption.

Affected products

8
  • cpe:2.3:a:adobe:acrobat:8.1.1:*:*:*:*:*:*:*+ 6 more
    • cpe:2.3:a:adobe:acrobat:8.1.1:*:*:*:*:*:*:*
    • cpe:2.3:a:adobe:acrobat:8.1.1:unknown:3d:*:*:*:*:*
    • cpe:2.3:a:adobe:acrobat:8.1.1:unknown:professional:*:*:*:*:*
    • cpe:2.3:a:adobe:acrobat:8.1.1:unknown:standard:*:*:*:*:*
    • cpe:2.3:a:adobe:acrobat:*:unknown:3d:*:*:*:*:*range: <=8.1.2
    • cpe:2.3:a:adobe:acrobat:*:unknown:professional:*:*:*:*:*range: <=8.1.2
    • cpe:2.3:a:adobe:acrobat:*:unknown:standard:*:*:*:*:*range: <=8.1.2
  • cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:*
    Range: <=8.0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

12

News mentions

0

No linked articles in our index yet.