CVE-2017-3090: Critical severity adobe digital editions vulnerability
Published Jun 20, 2017
·Updated
Adobe Digital Editions versions 4.5.4 and earlier contain an insecure library loading vulnerability. The vulnerability is due to unsafe library loading of browser related library extensions in the installer plugin. A successful exploitation could lead to arbitrary code execution.
Affected Software
1 affected component
Adobe Digital Editions<=4.5.4
Event History
Jun 20, 2017
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-3090?
CVE-2017-3090 is classified as critical due to the potential for arbitrary code execution.
2
How do I fix CVE-2017-3090?
To fix CVE-2017-3090, upgrade Adobe Digital Editions to version 4.5.5 or later.
3
What versions of Adobe Digital Editions are affected by CVE-2017-3090?
Adobe Digital Editions versions 4.5.4 and earlier are affected by CVE-2017-3090.
4
What type of vulnerability is CVE-2017-3090?
CVE-2017-3090 is an insecure library loading vulnerability.
5
What could be the consequence of exploiting CVE-2017-3090?
Exploiting CVE-2017-3090 could lead to arbitrary code execution on the affected system.