First published: Sat Dec 09 2017(Updated: )
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Digital Editions | <=4.5.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-11273 is a vulnerability in Adobe Digital Editions 4.5.6 and earlier versions that could lead to sensitive information disclosure.
Adobe Digital Editions parses crafted XML files in an unsafe manner.
The severity of CVE-2017-11273 is medium with a CVSS score of 5.5.
CVE-2017-11273 can be exploited by providing a specially crafted XML file.
To protect yourself from CVE-2017-11273, update Adobe Digital Editions to version 4.5.7 or later.