Common Vulnerabilities and Exposures assigned an identifier CVE-2008-2549 to the following vulnerability: Adobe Acrobat Reader 8.1.2 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a malformed PDF document, as demonstrated by 2008-HI2.pdf. References: http://www.milw0rm.com/exploits/5687 http://www.securityfocus.com/bid/29420
Created attachment 308415 [details] Public PoC http://www.milw0rm.com/exploits/5687 http://milw0rm.com/sploits/2008-HI2.pdf
Fixed upstream in 8.1.3: http://www.adobe.com/support/security/bulletins/apsb08-19.html
This issue was addressed in: Red Hat Enterprise Linux Extras: http://rhn.redhat.com/errata/RHSA-2008-0974.html