CVE-2014-8445: Acrobat Code Injection — Fix & Details

CVE-2014-8445 is a vulnerability of currently unknown severity. Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-8446, CVE-2014-8447, CVE-2014-8456, CVE-2014-8458, CVE-2014-8459, CVE-2014-8461, and CVE-2014-9158. EPSS estimates an 8.95% chance of exploitation in the next 30 days.

Description

Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-8446, CVE-2014-8447, CVE-2014-8456, CVE-2014-8458, CVE-2014-8459, CVE-2014-8461, and CVE-2014-9158.

Metrics

EPSS Probability 8.95%

94.6th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

Vendor Product Versions
Adobe Acrobat 10.0
Adobe Acrobat 10.0.1
Adobe Acrobat 10.0.2
Adobe Acrobat 10.0.3
Adobe Acrobat 10.1
Adobe Acrobat 10.1.1
Adobe Acrobat 10.1.2
Adobe Acrobat 10.1.3
Adobe Acrobat 10.1.4
Adobe Acrobat 10.1.5
Adobe Acrobat 10.1.6
Adobe Acrobat 10.1.7
Adobe Acrobat 10.1.8
Adobe Acrobat 10.1.9
Adobe Acrobat 10.1.10
Adobe Acrobat 10.1.11
Adobe Acrobat 10.1.12
Adobe Acrobat 11.0
Adobe Acrobat 11.0.1
Adobe Acrobat 11.0.2
Adobe Acrobat 11.0.3
Adobe Acrobat 11.0.4
Adobe Acrobat 11.0.5
Adobe Acrobat 11.0.6
Adobe Acrobat 11.0.7
Adobe Acrobat 11.0.8
Adobe Acrobat 11.0.9
Apple Mac Os X All versions
Microsoft Windows All versions
Adobe Acrobat Reader 10.0
Adobe Acrobat Reader 10.0.1
Adobe Acrobat Reader 10.0.2
Adobe Acrobat Reader 10.0.3
Adobe Acrobat Reader 10.1
Adobe Acrobat Reader 10.1.1
Adobe Acrobat Reader 10.1.2
Adobe Acrobat Reader 10.1.3
Adobe Acrobat Reader 10.1.4
Adobe Acrobat Reader 10.1.5
Adobe Acrobat Reader 10.1.6
Adobe Acrobat Reader 10.1.7
Adobe Acrobat Reader 10.1.8
Adobe Acrobat Reader 10.1.9
Adobe Acrobat Reader 10.1.10
Adobe Acrobat Reader 10.1.11
Adobe Acrobat Reader 10.1.12
Adobe Acrobat Reader 11.0.0
Adobe Acrobat Reader 11.0.01
Adobe Acrobat Reader 11.0.02
Adobe Acrobat Reader 11.0.03

References

Timeline

Published Dec 10, 2014

Last Modified Jun 17, 2026

Status Modified

Frequently Asked Questions

What is CVE-2014-8445?

How severe is CVE-2014-8445?

Severity scoring for CVE-2014-8445 is pending analysis. The EPSS model estimates an 8.95% probability of exploitation in the next 30 days.

How do I fix CVE-2014-8445?

Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.