First published: Tue Feb 12 2008(Updated: )
Untrusted search path vulnerability in Adobe Reader and Acrobat 8.1.1 and earlier allows local users to execute arbitrary code via a malicious Security Provider library in the reader's current working directory. NOTE: this issue might be subsumed by CVE-2008-0655.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Acrobat Reader | <=8.1.1 | |
Adobe Acrobat Reader | <=8.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-5666 is considered a high-severity vulnerability due to its potential to allow arbitrary code execution.
To fix CVE-2007-5666, upgrade Adobe Reader and Acrobat to version 8.1.2 or later.
CVE-2007-5666 affects Adobe Reader and Acrobat version 8.1.1 and earlier.
CVE-2007-5666 is classified as an untrusted search path vulnerability.
CVE-2007-5666 requires local access to exploit, as it involves executing malicious libraries in the current working directory.