CVE-2017-2979: High severity Adobe Digital Editions vulnerability
Published Feb 15, 2017
·Updated
Adobe Digital Editions versions 4.5.3 and earlier have an exploitable buffer over-read vulnerability. Successful exploitation could lead to information disclosure.
Affected Software
1 affected component
Adobe Digital Editions<=4.5.3
Event History
Feb 15, 2017
CVE Published
via MITRE·06:11 AM
Data Sourced
via MITRE·06:11 AM
DescriptionWeakness
Data Sourced
via NVD·06:59 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-2979?
CVE-2017-2979 is classified as a medium severity vulnerability due to its potential for information disclosure.
2
How do I fix CVE-2017-2979?
To fix CVE-2017-2979, upgrade Adobe Digital Editions to version 4.5.4 or later, which addresses this vulnerability.
3
What types of software are affected by CVE-2017-2979?
CVE-2017-2979 affects Adobe Digital Editions versions 4.5.3 and earlier.
4
What kind of attack can exploit CVE-2017-2979?
CVE-2017-2979 can be exploited through a buffer over-read attack that may lead to information disclosure.
5
Is user action required to exploit CVE-2017-2979?
Yes, successful exploitation of CVE-2017-2979 generally requires user interaction with crafted content.