CVE-2014-9161: Adobe Acrobat
High severity, CVSS 9.3. EPSS: 4.1% chance of exploitation in the next 30 days.
CoolType.dll in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows, and 10.x through 10.1.13 and 11.x through 11.0.10 on OS X, allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted PDF document.
Affected products
- Adobe Acrobat: version 10.0 only; version 10.0.1 only; version 10.0.2 only; version 10.0.3 only; version 10.1 only; version 10.1.1 only; …
- Adobe Acrobat Reader: version 10.1.13 only; version 11.0.10 only; version 10.0 only; version 10.0.1 only; version 10.0.2 only; version 10.0.3 only; …
Published 2015-01-30. Last modified 2026-06-17.