CVE-2008-5363

N/A Unknown
Published: December 08, 2008 Modified: April 23, 2026
View on NVD

Description

The ActionScript 2 virtual machine in Adobe Flash Player 10.x before 10.0.12.36 and 9.x before 9.0.151.0, and Adobe AIR before 1.5, does not validate character elements during retrieval from the dictionary data structure, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted PDF file.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://secunia.com/advisories/33390
Source: cve@mitre.org
Third Party Advisory
http://secunia.com/advisories/34226
Source: cve@mitre.org
Third Party Advisory
http://security.gentoo.org/glsa/glsa-200903-23.xml
Source: cve@mitre.org
Third Party Advisory
http://securityreason.com/securityalert/4692
Source: cve@mitre.org
Third Party Advisory
http://support.avaya.com/elmodocs2/security/ASA-2009-020.htm
Source: cve@mitre.org
Third Party Advisory
http://www.adobe.com/support/security/bulletins/apsb08-22.html
Source: cve@mitre.org
Patch Vendor Advisory
http://www.isecpartners.com/advisories/2008-01-flash.txt
Source: cve@mitre.org
Third Party Advisory
http://www.securityfocus.com/archive/1/498561/100/0/threaded
Source: cve@mitre.org
Third Party Advisory VDB Entry
http://secunia.com/advisories/33390
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://secunia.com/advisories/34226
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://security.gentoo.org/glsa/glsa-200903-23.xml
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://securityreason.com/securityalert/4692
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://sunsolve.sun.com/search/document.do?assetkey=1-26-248586-1
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
http://support.avaya.com/elmodocs2/security/ASA-2009-020.htm
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://www.adobe.com/support/security/bulletins/apsb08-22.html
Source: af854a3a-2127-422b-91ae-364da2661108
Patch Vendor Advisory
http://www.isecpartners.com/advisories/2008-01-flash.txt
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://www.securityfocus.com/archive/1/498561/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory VDB Entry

18 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
3.6%
88th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

adobe