Is anyone else troubled by the fact that a document reader can even have a vulnerability that would allow elevation to root? I mean, that suggests that the app somewhere has the code to elevate to root privileges and doesn't properly secure how it is called. I can't imagine any reason a document reader would even need that permission.