CVE-2014-8451: Infoleak
Published Dec 10, 2014
·Updated
An unspecified JavaScript API in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allows attackers to obtain sensitive information via unknown vectors, a different vulnerability than CVE-2014-8448.
Affected Software
56 affected components
Adobe Acrobat=10.0
Adobe Acrobat=10.0.1
Adobe Acrobat=10.0.2
Adobe Acrobat=10.0.3
Adobe Acrobat=10.1
Adobe Acrobat=10.1.1
Adobe Acrobat=10.1.2
Adobe Acrobat=10.1.3
Adobe Acrobat=10.1.4
Adobe Acrobat=10.1.5
Adobe Acrobat=10.1.6
Adobe Acrobat=10.1.7
Adobe Acrobat=10.1.8
Adobe Acrobat=10.1.9
Adobe Acrobat=10.1.10
Adobe Acrobat=10.1.11
Adobe Acrobat=10.1.12
Adobe Acrobat=11.0
Adobe Acrobat=11.0.1
Adobe Acrobat=11.0.2
Adobe Acrobat=11.0.3
Adobe Acrobat=11.0.4
Adobe Acrobat=11.0.5
Adobe Acrobat=11.0.6
Adobe Acrobat=11.0.7
Adobe Acrobat=11.0.8
Adobe Acrobat=11.0.9
Apple iOS and macOS
Microsoft Windows
Adobe Acrobat Reader=10.0
Adobe Acrobat Reader=10.0.1
Adobe Acrobat Reader=10.0.2
Adobe Acrobat Reader=10.0.3
Adobe Acrobat Reader=10.1
Adobe Acrobat Reader=10.1.1
Adobe Acrobat Reader=10.1.2
Adobe Acrobat Reader=10.1.3
Adobe Acrobat Reader=10.1.4
Adobe Acrobat Reader=10.1.5
Adobe Acrobat Reader=10.1.6
Adobe Acrobat Reader=10.1.7
Adobe Acrobat Reader=10.1.8
Adobe Acrobat Reader=10.1.9
Adobe Acrobat Reader=10.1.10
Adobe Acrobat Reader=10.1.11
Adobe Acrobat Reader=10.1.12
Adobe Acrobat Reader=11.0.0
Adobe Acrobat Reader=11.0.01
Adobe Acrobat Reader=11.0.02
Adobe Acrobat Reader=11.0.03
Adobe Acrobat Reader=11.0.04
Adobe Acrobat Reader=11.0.05
Adobe Acrobat Reader=11.0.06
Adobe Acrobat Reader=11.0.07
Adobe Acrobat Reader=11.0.08
Adobe Acrobat Reader=11.0.09
Event History
Dec 10, 2014
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-8451?
CVE-2014-8451 is rated as critical due to its potential to expose sensitive information.
2
How do I fix CVE-2014-8451?
To mitigate CVE-2014-8451, update Adobe Reader and Acrobat to version 11.0.10 or 10.1.13 or later.
3
What versions of Adobe Acrobat are affected by CVE-2014-8451?
Adobe Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 are vulnerable to CVE-2014-8451.
4
Can CVE-2014-8451 affect macOS users?
Yes, CVE-2014-8451 affects both Windows and macOS users of Adobe Reader and Acrobat.
5
What type of attack does CVE-2014-8451 enable?
CVE-2014-8451 allows attackers to obtain sensitive information through an unspecified JavaScript API.