CVE-2017-3097: Critical severity adobe digital editions vulnerability
Published Jun 20, 2017
·Updated
Adobe Digital Editions versions 4.5.4 and earlier contain an insecure library loading vulnerability. The vulnerability is due to unsafe library loading functions in the installer plugin. A successful exploitation could lead to arbitrary code execution.
Affected Software
1 affected component
Adobe Digital Editions<=4.5.4
Event History
Jun 20, 2017
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-3097?
CVE-2017-3097 has been classified as a critical vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2017-3097?
To fix CVE-2017-3097, update Adobe Digital Editions to version 4.5.5 or later.
3
What does CVE-2017-3097 exploit?
CVE-2017-3097 exploits insecure library loading functions within the installer plugin of Adobe Digital Editions.
4
Which versions of Adobe Digital Editions are affected by CVE-2017-3097?
Adobe Digital Editions versions 4.5.4 and earlier are affected by CVE-2017-3097.
5
What could be the impact of CVE-2017-3097 if exploited?
If exploited, CVE-2017-3097 could allow an attacker to execute arbitrary code on the affected system.