First published: Thu Dec 15 2016(Updated: )
Adobe Digital Editions versions 4.5.2 and earlier has an issue with parsing crafted XML entries that could lead to information disclosure.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Digital Editions | <=4.5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-7889 has been categorized as a moderate severity vulnerability due to its potential for information disclosure.
To fix CVE-2016-7889, update Adobe Digital Editions to version 4.5.3 or later.
CVE-2016-7889 affects Adobe Digital Editions versions 4.5.2 and earlier.
Yes, CVE-2016-7889 can be exploited remotely through crafted XML entries.
CVE-2016-7889 is an information disclosure vulnerability related to XML parsing.