CVE-2014-9161
published 2015-01-30CVE-2014-9161: CoolType.dll in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows, and 10.x through 10.1.13 and 11.x through 11.0.10 on OS X…
PriorityP341critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
4.05%
89.6th percentile
CoolType.dll in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows, and 10.x through 10.1.13 and 11.x through 11.0.10 on OS X, allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted PDF document.
Affected
70 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-fcg8-gw57-7w3c: CoolType
ghsa_unreviewed·2022-05-17
CVE-2014-9161 [HIGH] CWE-119 GHSA-fcg8-gw57-7w3c: CoolType
CoolType.dll in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows, and 10.x through 10.1.13 and 11.x through 11.0.10 on OS X, allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted PDF document.
GHSA
GHSA-4rph-jf58-r356: Adobe Reader and Acrobat 10
ghsa_unreviewed·2022-05-17·CVSS 9.3
CVE-2015-3050 [CRITICAL] CWE-119 GHSA-4rph-jf58-r356: Adobe Reader and Acrobat 10
Adobe Reader and Acrobat 10.x before 10.1.14 and 11.x before 11.0.11 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-9161, CVE-2015-3046, CVE-2015-3049, CVE-2015-3051, CVE-2015-3052, CVE-2015-3056, CVE-2015-3057, CVE-2015-3070, and CVE-2015-3076.
GHSA
GHSA-wx98-qq43-5g58: Adobe Reader and Acrobat 10
ghsa_unreviewed·2022-05-17·CVSS 9.3
CVE-2015-3057 [CRITICAL] CWE-119 GHSA-wx98-qq43-5g58: Adobe Reader and Acrobat 10
Adobe Reader and Acrobat 10.x before 10.1.14 and 11.x before 11.0.11 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-9161, CVE-2015-3046, CVE-2015-3049, CVE-2015-3050, CVE-2015-3051, CVE-2015-3052, CVE-2015-3056, CVE-2015-3070, and CVE-2015-3076.
GHSA
GHSA-gqw2-24hf-qv8p: Adobe Reader and Acrobat 10
ghsa_unreviewed·2022-05-17·CVSS 9.3
CVE-2015-3052 [CRITICAL] CWE-119 GHSA-gqw2-24hf-qv8p: Adobe Reader and Acrobat 10
Adobe Reader and Acrobat 10.x before 10.1.14 and 11.x before 11.0.11 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-9161, CVE-2015-3046, CVE-2015-3049, CVE-2015-3050, CVE-2015-3051, CVE-2015-3056, CVE-2015-3057, CVE-2015-3070, and CVE-2015-3076.
GHSA
GHSA-w3h5-qr68-5ff4: Adobe Reader and Acrobat 10
ghsa_unreviewed·2022-05-17·CVSS 9.3
CVE-2015-3049 [CRITICAL] CWE-119 GHSA-w3h5-qr68-5ff4: Adobe Reader and Acrobat 10
Adobe Reader and Acrobat 10.x before 10.1.14 and 11.x before 11.0.11 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-9161, CVE-2015-3046, CVE-2015-3050, CVE-2015-3051, CVE-2015-3052, CVE-2015-3056, CVE-2015-3057, CVE-2015-3070, and CVE-2015-3076.
GHSA
GHSA-77gp-7427-w37r: Adobe Reader and Acrobat 10
ghsa_unreviewed·2022-05-17·CVSS 9.3
CVE-2015-3076 [CRITICAL] CWE-119 GHSA-77gp-7427-w37r: Adobe Reader and Acrobat 10
Adobe Reader and Acrobat 10.x before 10.1.14 and 11.x before 11.0.11 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-9161, CVE-2015-3046, CVE-2015-3049, CVE-2015-3050, CVE-2015-3051, CVE-2015-3052, CVE-2015-3056, CVE-2015-3057, and CVE-2015-3070.
GHSA
GHSA-9659-pqfr-cff6: Adobe Reader and Acrobat 10
ghsa_unreviewed·2022-05-17·CVSS 9.3
CVE-2015-3046 [CRITICAL] CWE-119 GHSA-9659-pqfr-cff6: Adobe Reader and Acrobat 10
Adobe Reader and Acrobat 10.x before 10.1.14 and 11.x before 11.0.11 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-9161, CVE-2015-3049, CVE-2015-3050, CVE-2015-3051, CVE-2015-3052, CVE-2015-3056, CVE-2015-3057, CVE-2015-3070, and CVE-2015-3076.
GHSA
GHSA-fc2f-r9p9-rcqq: Adobe Reader and Acrobat 10
ghsa_unreviewed·2022-05-17·CVSS 9.3
CVE-2015-3051 [CRITICAL] CWE-119 GHSA-fc2f-r9p9-rcqq: Adobe Reader and Acrobat 10
Adobe Reader and Acrobat 10.x before 10.1.14 and 11.x before 11.0.11 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-9161, CVE-2015-3046, CVE-2015-3049, CVE-2015-3050, CVE-2015-3052, CVE-2015-3056, CVE-2015-3057, CVE-2015-3070, and CVE-2015-3076.
GHSA
GHSA-g996-x3qr-fm83: Adobe Reader and Acrobat 10
ghsa_unreviewed·2022-05-17·CVSS 9.3
CVE-2015-3070 [CRITICAL] CWE-119 GHSA-g996-x3qr-fm83: Adobe Reader and Acrobat 10
Adobe Reader and Acrobat 10.x before 10.1.14 and 11.x before 11.0.11 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-9161, CVE-2015-3046, CVE-2015-3049, CVE-2015-3050, CVE-2015-3051, CVE-2015-3052, CVE-2015-3056, CVE-2015-3057, and CVE-2015-3076.
GHSA
GHSA-gcr8-c572-x97j: Adobe Reader and Acrobat 10
ghsa_unreviewed·2022-05-17·CVSS 9.3
CVE-2015-3056 [CRITICAL] CWE-119 GHSA-gcr8-c572-x97j: Adobe Reader and Acrobat 10
Adobe Reader and Acrobat 10.x before 10.1.14 and 11.x before 11.0.11 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-9161, CVE-2015-3046, CVE-2015-3049, CVE-2015-3050, CVE-2015-3051, CVE-2015-3052, CVE-2015-3057, CVE-2015-3070, and CVE-2015-3076.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://code.google.com/p/google-security-research/issues/detail?id=149http://packetstormsecurity.com/files/134394/Adobe-Reader-X-XI-Out-Of-Bounds-Read.htmlhttp://www.securityfocus.com/bid/74600http://www.securitytracker.com/id/1032284https://helpx.adobe.com/security/products/reader/apsb15-10.htmlhttp://code.google.com/p/google-security-research/issues/detail?id=149http://packetstormsecurity.com/files/134394/Adobe-Reader-X-XI-Out-Of-Bounds-Read.htmlhttp://www.securityfocus.com/bid/74600http://www.securitytracker.com/id/1032284https://helpx.adobe.com/security/products/reader/apsb15-10.html
2015-01-30
Published