
CVE-2014-9161 – Adobe Reader X / XI out of Bounds Read
https://notcve.org/view.php?id=CVE-2014-9161
30 Jan 2015 — CoolType.dll in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows, and 10.x through 10.1.13 and 11.x through 11.0.10 on OS X, allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted PDF document. CoolType.dll en Adobe Reader y Acrobat 10.x anterior a 10.1.13 y 11.x anterior a 11.0.10 en Windows, y 10.x hasta 10.1.13 y 11.x hasta 11.0.10 en OS X, permite a atacantes remotos causar una denegación de servici... • https://packetstorm.news/files/id/134394 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2014-9159
https://notcve.org/view.php?id=CVE-2014-9159
10 Dec 2014 — Heap-based buffer overflow in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-8457 and CVE-2014-8460. Desbordamiento de buffer basado en memoria dinámica en Adobe Reader y Acrobat 10.x anterior a 10.1.13 y 11.x anterior a 11.0.10 en Windows y OS X permite a atacantes ejecutar código arbitrario a través de vectores no especificados, una vulnerabilidad diferente ... • http://helpx.adobe.com/security/products/reader/apsb14-28.html •

CVE-2014-9165
https://notcve.org/view.php?id=CVE-2014-9165
10 Dec 2014 — Use-after-free vulnerability in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-8454 and CVE-2014-8455. Vulnerabilidad de uso después de liberación en Adobe Reader y Acrobat 10.x anterior a 10.1.13 y 11.x anterior a 11.0.10 en Windows y OS X permite a atacantes ejecutar código arbitrario a través de vectores no especificados, una vulnerabilidad diferente a CVE-... • http://helpx.adobe.com/security/products/reader/apsb14-28.html •

CVE-2014-8445
https://notcve.org/view.php?id=CVE-2014-8445
10 Dec 2014 — Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-8446, CVE-2014-8447, CVE-2014-8456, CVE-2014-8458, CVE-2014-8459, CVE-2014-8461, and CVE-2014-9158. Adobe Reader y Acrobat 10.x anterior a 10.1.13 y 11.x anterior a 11.0.10 en Windows y OS X permiten a atacantes ejecutar código arbitrario o causar una denegación de s... • http://helpx.adobe.com/security/products/reader/apsb14-28.html • CWE-94: Improper Control of Generation of Code ('Code Injection') •

CVE-2014-8446
https://notcve.org/view.php?id=CVE-2014-8446
10 Dec 2014 — Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-8445, CVE-2014-8447, CVE-2014-8456, CVE-2014-8458, CVE-2014-8459, CVE-2014-8461, and CVE-2014-9158. Adobe Reader y Acrobat 10.x anterior a 10.1.13 y 11.x anterior a 11.0.10 en Windows y OS X permiten a atacantes ejecutar código arbitrario o causar una denegación de s... • http://helpx.adobe.com/security/products/reader/apsb14-28.html •

CVE-2014-8447
https://notcve.org/view.php?id=CVE-2014-8447
10 Dec 2014 — Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-8445, CVE-2014-8446, CVE-2014-8456, CVE-2014-8458, CVE-2014-8459, CVE-2014-8461, and CVE-2014-9158. Adobe Reader y Acrobat 10.x anterior a 10.1.13 y 11.x anterior a 11.0.10 en Windows y OS X permiten a atacantes ejecutar código arbitrario o causar una denegación de s... • http://helpx.adobe.com/security/products/reader/apsb14-28.html • CWE-94: Improper Control of Generation of Code ('Code Injection') •

CVE-2014-8448
https://notcve.org/view.php?id=CVE-2014-8448
10 Dec 2014 — An unspecified JavaScript API in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allows attackers to obtain sensitive information via unknown vectors, a different vulnerability than CVE-2014-8451. Una APi JavaScript no especifcada en Adobe Reader y Acrobat 10.x anterior a 10.1.13 y 11.x anterior a 11.0.10 en Windows y OS X permite a atacantes obtener información sensible a través de vectores desconocidos, una vulnerabilidad diferente a CVE-2014-8451. • http://helpx.adobe.com/security/products/reader/apsb14-28.html • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2014-8449
https://notcve.org/view.php?id=CVE-2014-8449
10 Dec 2014 — Integer overflow in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allows attackers to execute arbitrary code via unspecified vectors. Desbordamiento de enteros en Adobe Reader y Acrobat 10.x anterior a 10.1.13 y 11.x anterior a 11.0.10 en Windows y OS X permite a atacantes ejecutar código arbitrario a través de vectores no especificados. • http://helpx.adobe.com/security/products/reader/apsb14-28.html • CWE-189: Numeric Errors •

CVE-2014-8451
https://notcve.org/view.php?id=CVE-2014-8451
10 Dec 2014 — An unspecified JavaScript API in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allows attackers to obtain sensitive information via unknown vectors, a different vulnerability than CVE-2014-8448. Una API JavaScript no especificada en Adobe Reader y Acrobat 10.x anterior a 10.1.13 y 11.x anterior a 11.0.10 en Windows y OS X permite a atacantes obtener información sensible a través de vectores desconocidos, una vulnerabilidad diferente a CVE-2014-8448. • http://helpx.adobe.com/security/products/reader/apsb14-28.html • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2014-8452
https://notcve.org/view.php?id=CVE-2014-8452
10 Dec 2014 — Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allow remote attackers to read arbitrary files via an XML external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. Adobe Reader y Acrobat 10.x anterior a 10.1.13 y 11.x anterior a 11.0.10 en Windows y OS X permiten a atacantes remotos leer ficheros arbitrarios a través de una declaración de entidad externa XML en conjunto con una referencia de entidad, relaciona... • http://helpx.adobe.com/security/products/reader/apsb14-28.html • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •