← Vulnerability feed

Vulnerability record · CVE-2008-0655 · published 7 February 2008

CVE-2008-0655: Adobe Reader and Acrobat unspecified memory corruption flaws

Adobe · Acrobat

Adobe Reader and Acrobat before 8.1.2 contain multiple unspecified vulnerabilities with unknown impact and attack vectors. The record gives no technical detail on the underlying flaws, but the CVSS vector indicates remote code execution potential with high confidentiality, integrity and availability impact. Because the flaws are unspecified, defenders cannot scope affected code paths beyond the version boundary.

8.8 CVSS 3.1 High CISA KEV since 8 Jun 2022 EPSS 38% · top 1.5% CWE-200 · Information exposure
8.8CVSS 3.1 base score, v2 9.3
38%EPSS exploitation probability, 30 days
YesIn CISA KEV, fix deadline passed
2Affected product versions listed by NVD
41References, 2 tagged exploit
16 Jun 2026Last modified by NVD

Description

Multiple unspecified vulnerabilities in Adobe Reader and Acrobat before 8.1.2 have unknown impact and attack vectors.

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Automated analysis

Generated by VULONE's analysis model from the NVD record, CISA KEV and EPSS data on 17 September 2026. Confidence: medium.

high priorityThe flaw is in CISA KEV with high EPSS and a CVSS of 8.8, but the record lacks technical detail and the affected versions are long superseded.

What it is

Adobe Reader and Acrobat before 8.1.2 contain multiple unspecified vulnerabilities with unknown impact and attack vectors. The record gives no technical detail on the underlying flaws, but the CVSS vector indicates remote code execution potential with high confidentiality, integrity and availability impact. Because the flaws are unspecified, defenders cannot scope affected code paths beyond the version boundary.

Impact

An attacker who successfully triggers the flaws could achieve full compromise of confidentiality, integrity and availability on the victim's system, consistent with the CVSS 3.1 base score of 8.8. The record does not describe the specific gain beyond this generic impact.

Attack surface

The vector is network-reachable with no privileges required, but user interaction is required, consistent with a victim opening a crafted PDF or visiting attacker-controlled content in the affected products. No authentication is needed on the attacker side.

Exploitation

The vulnerability is listed in CISA KEV with a 2022-06-08 addition date, and EPSS shows a 30-day probability of roughly 0.39 at the 98.5th percentile, indicating observed exploitation and elevated likelihood. A reference is tagged Exploit, though the record does not describe the exploit itself.

What to do

  • Upgrade Adobe Reader and Acrobat to 8.1.2 or later, or to a currently supported release, per the vendor advisory.
  • Apply the vendor and third-party patches referenced in the advisory, including Linux distribution updates for bundled Reader.
  • Disable or restrict JavaScript and non-essential plug-ins in Reader/Acrobat where business use allows.
  • Enforce opening PDFs only from trusted sources and block untrusted PDF attachments at the mail and web gateway.
  • Retire or isolate end-of-life Reader/Acrobat versions that cannot be patched.

Detection

  • Monitor for Reader/Acrobat process crashes or abnormal child processes spawned from AcroRd32.exe or acroread.
  • Alert on PDF files written to disk or opened from temp, mail cache or browser download directories shortly before a Reader crash.
  • Hunt for network connections or file writes originating from Reader/Acrobat processes to unusual destinations.
  • Review endpoint logs for exploitation indicators around the KEV due date window and correlate with patch state of Reader/Acrobat.

This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.

Exploitation in the wild

CISA added CVE-2008-0655 to the Known Exploited Vulnerabilities catalog on 8 June 2022 as "Adobe Acrobat and Reader Unspecified Vulnerability". Required action: Apply updates per vendor instructions. Federal deadline 22 June 2022.

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://blogs.adobe.com/acroread/2008/02/adobe_reader_812_for_linux_and.html Broken Link
http://kb.adobe.com/selfservice/viewContent.do?externalId=kb403079&sliceId=1 Vendor Advisory
http://lists.opensuse.org/opensuse-security-announce/2008-02/msg00007.html Broken Link
http://secunia.com/advisories/28802 Broken LinkPatchVendor Advisory
http://secunia.com/advisories/28851 Broken LinkVendor Advisory
http://secunia.com/advisories/28983 Broken LinkVendor Advisory
http://secunia.com/advisories/29065 Broken LinkVendor Advisory
http://secunia.com/advisories/29205 Broken LinkVendor Advisory
http://secunia.com/advisories/30840 Broken LinkVendor Advisory
http://security.gentoo.org/glsa/glsa-200803-01.xml Third Party Advisory
http://securitytracker.com/id?1019346 Broken LinkThird Party AdvisoryVDB Entry
http://sunsolve.sun.com/search/document.do?assetkey=1-26-239286-1 Broken Link
http://www.adobe.com/support/security/advisories/apsa08-01.html Vendor Advisory
http://www.adobe.com/support/security/bulletins/apsb08-13.html Vendor Advisory
http://www.redhat.com/support/errata/RHSA-2008-0144.html Broken Link
http://www.securityfocus.com/bid/27641 Broken LinkExploitPatchThird Party AdvisoryVDB Entry
http://www.us-cert.gov/cas/techalerts/TA08-043A.html Broken LinkThird Party AdvisoryUS Government Resource
http://www.vupen.com/english/advisories/2008/0425 Broken Link
http://www.vupen.com/english/advisories/2008/1966/references Broken LinkVendor Advisory
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10299 Broken Link
http://blogs.adobe.com/acroread/2008/02/adobe_reader_812_for_linux_and.html Broken Link
http://kb.adobe.com/selfservice/viewContent.do?externalId=kb403079&sliceId=1 Vendor Advisory
http://lists.opensuse.org/opensuse-security-announce/2008-02/msg00007.html Broken Link
http://secunia.com/advisories/28802 Broken LinkPatchVendor Advisory
http://secunia.com/advisories/28851 Broken LinkVendor Advisory
http://secunia.com/advisories/28983 Broken LinkVendor Advisory
http://secunia.com/advisories/29065 Broken LinkVendor Advisory
http://secunia.com/advisories/29205 Broken LinkVendor Advisory
http://secunia.com/advisories/30840 Broken LinkVendor Advisory
http://security.gentoo.org/glsa/glsa-200803-01.xml Third Party Advisory
http://securitytracker.com/id?1019346 Broken LinkThird Party AdvisoryVDB Entry
http://sunsolve.sun.com/search/document.do?assetkey=1-26-239286-1 Broken Link
http://www.adobe.com/support/security/advisories/apsa08-01.html Vendor Advisory
http://www.adobe.com/support/security/bulletins/apsb08-13.html Vendor Advisory
http://www.redhat.com/support/errata/RHSA-2008-0144.html Broken Link
http://www.securityfocus.com/bid/27641 Broken LinkExploitPatchThird Party AdvisoryVDB Entry
http://www.us-cert.gov/cas/techalerts/TA08-043A.html Broken LinkThird Party AdvisoryUS Government Resource
http://www.vupen.com/english/advisories/2008/0425 Broken Link
http://www.vupen.com/english/advisories/2008/1966/references Broken LinkVendor Advisory
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10299 Broken Link

Track CVE-2008-0655 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2014-0546Adobe Reader and Acrobat sandbox bypass allows privileged code executionAdobe Reader and Acrobat 10.x before 10.1.11 and 11.x before 11.0.08 on Windows contain a sandbox protection bypass. An attacker can escape the Reade…KEVEPSS 22%analysed9.8CVE-2013-3346Adobe Reader and Acrobat memory corruption allows code executionAdobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 contain an out-of-bounds write (CWE-787) that corrupts memory.…KEVEPSS 79%analysed9.8CVE-2013-2729Adobe Reader and Acrobat integer overflow allows code executionAdobe Reader and Acrobat contain an integer overflow (CWE-190) that can be triggered by unspecified vectors, leading to arbitrary code execution. It …KEVEPSS 67%analysed9.8CVE-2011-2462Adobe Reader and Acrobat U3D memory corruption code executionAn out-of-bounds write in the U3D component of Adobe Reader and Acrobat allows remote attackers to corrupt memory and execute arbitrary code. The fla…KEVEPSS 89%analysed8.8CVE-2021-28550Adobe Acrobat and Reader use-after-free allows code executionAdobe Acrobat Reader DC (2021.001.20150, 2020.001.30020, 2017.011.30194 and earlier) and related Acrobat products contain a use-after-free (CWE-416) …KEVEPSS 52%analysed8.8CVE-2021-21017Adobe Acrobat and Reader heap buffer overflow via malicious fileAdobe Acrobat Reader DC (2020.013.20074, 2020.001.30018, 2017.011.30188 and earlier) contains a heap-based buffer overflow (CWE-122/CWE-787) triggere…KEVEPSS 86%analysed8.8CVE-2014-0496Adobe Reader and Acrobat use-after-free code executionAdobe Reader and Acrobat 10.x before 10.1.9 and 11.x before 11.0.06 on Windows and Mac OS X contain a use-after-free (CWE-416) that allows arbitrary …KEVEPSS 40%analysed8.8CVE-2011-0611Adobe Flash Player type confusion allows remote code executionAdobe Flash Player, Adobe AIR and the Authplay component in Adobe Reader/Acrobat contain a type confusion flaw (CWE-843) reachable through crafted Fl…KEVEPSS 99%analysed

Source: NIST National Vulnerability Database (record CVE-2008-0655), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.